First published: Wed Sep 21 2016(Updated: )
Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Debian Debian Linux | =8.0 | |
uclouvain openjpeg | <=2.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8871 is classified as a high severity vulnerability due to its potential for exploitation by remote attackers.
CVE-2015-8871 affects OpenJPEG versions up to 2.1.0, Google Android, and Debian Linux 8.0.
To fix CVE-2015-8871, update OpenJPEG to version 2.1.1 or later and ensure your affected software is patched.
CVE-2015-8871 is a use-after-free vulnerability that allows remote attackers to exploit the flaw.
Exploiting CVE-2015-8871 could lead to arbitrary code execution or cause instability in the affected application.