Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yanxxd

#41874of 53,625
6.5Total CVSS
Vulnerabilities · 1
PT-2019-18401
6.5
2019-01-28
Openjpeg · Openjpeg · CVE-2019-6988
**Name of the Vulnerable Software and Affected Versions** OpenJPEG version 2.3.0 **Description** An issue in OpenJPEG allows remote attackers to cause a denial of service through attempted excessive memory allocation. This occurs in the `opj calloc` function in `openjp2/opj malloc.c` when called from `opj tcd init tile` in `openjp2/tcd.c`. This issue is demonstrated by the 64-bit `opj decompress`. **Recommendations** For OpenJPEG version 2.3.0, at the moment, there is no information about a newer version that contains a fix for this issue.