PT-2026-32447 · Uclouvain+2 · Openjpeg+2

Kery Qi

·

Published

2026-04-13

·

Updated

2026-05-21

·

CVE-2026-6192

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions uclouvain openjpeg versions prior to 2.5.5
Description An integer overflow occurs in the opj pi initialise encode() function within the src/lib/openjp2/pi.c library. This issue requires local access to be exploited.
Recommendations Install the patch identified as 839936aa33eb8899bbbd80fda02796bb65068951 for versions prior to 2.5.5.

Exploit

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-6192
ECHO-A92E-9791-007A
OESA-2026-1959
OESA-2026-2022
OESA-2026-2023
OESA-2026-2024
OESA-2026-2025
USN-8252-1

Affected Products

Linuxmint
Ubuntu
Openjpeg