« List of all CVEs

CVE-2023-39328

Openjpeg: denail of service via crafted image file

Published: 7/9/2024 Last updated: 11/20/2025 Reserved: 7/27/2023

A vulnerability was found in OpenJPEG similar to CVE-2019-6988. This flaw allows an attacker to bypass existing protections and cause an application crash through a maliciously crafted file.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 5.5 Medium CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Opam packages affected (1)

grib

Products affected (18)

Product Vendor Version
Red Hat Enterprise Linux 8 Red Hat < V2.17.0
Red Hat Enterprise Linux 8 Red Hat SM7550P
Red Hat Enterprise Linux 8 Red Hat < V2.17.0
Red Hat Enterprise Linux 8 Red Hat SM8550P
Red Hat Enterprise Linux 8 Red Hat Smart Audio 400 Platform
Red Hat Enterprise Linux 8 Red Hat < V2.17.0
SG4150P
Red Hat Enterprise Linux 6 Red Hat SG8275
Red Hat Enterprise Linux 7 Red Hat SG8275P
< 13.4.23
Red Hat Enterprise Linux 6 Red Hat < 14.0.2
Red Hat Enterprise Linux 7 Red Hat < V2.17.0
Red Hat Enterprise Linux 7 Red Hat < V2.17.0
Red Hat Enterprise Linux 9 Red Hat Snapdragon 662 Mobile Platform
Red Hat Enterprise Linux 8 Red Hat Snapdragon 460 Mobile Platform
Red Hat Enterprise Linux 7 Red Hat SM7550
Red Hat Enterprise Linux 8 Red Hat < V2.17.0
Red Hat Enterprise Linux 9 Red Hat < V2.17.0

References (8)