PT-2024-12804 · Openjpeg+1 · Openjpeg+1

Pedro Sampaio

·

Published

2024-07-05

·

Updated

2026-03-09

·

CVE-2023-39329

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions OpenJPEG (affected versions not specified)
Description A flaw in OpenJPEG can cause a resource exhaustion in the opj t1 decode cblks function in tcd.c through a crafted image file, leading to a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

AZL-43495
AZL-44217
CVE-2023-39329
ECHO-91BF-3D3C-AEE7

Affected Products

Debian
Openjpeg