PT-2018-5098 · Openjpeg+3 · Openjpeg+3

Chunibalon

·

Published

2016-12-27

·

Updated

2026-03-29

·

CVE-2016-9581

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions openjpeg version 2.1.2
Description A heap buffer overflow issue was discovered due to an infinite loop vulnerability in the tiftoimage component of openjpeg, specifically affecting the convert 32s C1P1 function.
Recommendations For openjpeg version 2.1.2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Infinite Loop

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2017-2084
CVE-2016-9581
ECHO-64A0-BD37-0201
MGASA-2016-0426
OPENSUSE-SU-2017:2567-1
OPENSUSE-SU-2017_0155-1
OPENSUSE-SU-2017_0185-1
OPENSUSE-SU-2017_0207-1
SUSE-SU-2016:3270-1

Affected Products

Alt Linux
Debian
Suse
Openjpeg