CVE-2016-9115: Buffer Overflow
Published Oct 30, 2016
·Updated
Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.
Affected Software
1 affected component
uclouvain openjpeg=2.1.2
Event History
Oct 30, 2016
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-9115?
CVE-2016-9115 has a severity level classified as Denial of Service.
2
How do I fix CVE-2016-9115?
To fix CVE-2016-9115, upgrade OpenJPEG to version 2.1.3 or later.
3
What software is affected by CVE-2016-9115?
CVE-2016-9115 affects OpenJPEG version 2.1.2.
4
What is the impact of CVE-2016-9115?
The impact of CVE-2016-9115 is a potential Denial of Service when handling crafted j2k files.
5
How does CVE-2016-9115 exploit occur?
CVE-2016-9115 exploit occurs through a heap buffer over-read in the imagetotga function of OpenJPEG.