« List of all CVEs

CVE-2023-39328

Openjpeg: denail of service via crafted image file

Published: 7/9/2024 Last updated: 6/26/2026 Reserved: 7/27/2023

A vulnerability was found in OpenJPEG similar to CVE-2019-6988. This flaw allows an attacker to bypass existing protections and cause an application crash through a maliciously crafted file.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 5.5 Medium CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Opam packages affected (1)

grib

Products affected (18)

Product Vendor Version
Red Hat Enterprise Linux 8 Red Hat < publication
Red Hat Enterprise Linux 8 Red Hat 10.0.*
Red Hat Enterprise Linux 8 Red Hat AR8035, AR9380, CSR8811, CSRB31024, IPQ4018, IPQ4019, IPQ4028, IPQ4029, IPQ5010, IPQ5018, IPQ5028, IPQ6010, IPQ6018, IPQ6028, IPQ8064, IPQ8065, IPQ8068, IPQ8070, IPQ8070A, IPQ8071A, IPQ8072A, IPQ8074A, IPQ8076, IPQ8076A, IPQ8078, IPQ8078A, IPQ8173, IPQ8174, PMP8074, QCA4024, QCA6390, QCA6391, QCA6426, QCA6436, QCA6554A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584AU, QCA6595, QCA6595AU, QCA6696, QCA7500, QCA8072, QCA8075, QCA8081, QCA8337, QCA9880, QCA9886, QCA9888, QCA9889, QCA9898, QCA9980, QCA9984, QCA9985, QCA9990, QCA9992, QCA9994, QCM6125, QCM6490, QCN5021, QCN5022, QCN5024, QCN5052, QCN5054, QCN5122, QCN5124, QCN5152, QCN5154, QCN5164, QCN6023, QCN6024, QCN6100, QCN6102, QCN6112, QCN6122, QCN6132, QCN9000, QCN9011, QCN9012, QCN9022, QCN9024, QCN9070, QCN9072, QCN9074, QCN9100, QCS6125, QCS6490, QRB5165, QRB5165M, QRB5165N, SA4150P, SA4155P, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8145P, SA8150P, SA8155, SA8155P, SA8195P, SD 8 Gen1 5G, SD460, SD480, SD662, SD765, SD765G, ...[truncated*]
Red Hat Enterprise Linux 8 Red Hat 10.1.*
Red Hat Enterprise Linux 8 Red Hat < 8.1.17
Red Hat Enterprise Linux 8 Red Hat n/a
n/a
Red Hat Enterprise Linux 6 Red Hat 9.0.2 versions
Red Hat Enterprise Linux 7 Red Hat 9.0.*
>= 2.2, < 5.0.13
Red Hat Enterprise Linux 6 Red Hat Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9 Android-10
Red Hat Enterprise Linux 7 Red Hat < publication
Red Hat Enterprise Linux 7 Red Hat < publication
Red Hat Enterprise Linux 9 Red Hat 2.1 all
Red Hat Enterprise Linux 8 Red Hat 2.2 all
Red Hat Enterprise Linux 7 Red Hat 9.1.*
Red Hat Enterprise Linux 8 Red Hat < publication
Red Hat Enterprise Linux 9 Red Hat < publication

References (14)