First published: Wed Aug 01 2018(Updated: )
An infinite loop vulnerability in tiftoimage that results in heap buffer overflow in convert_32s_C1P1 was found in openjpeg 2.1.2.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Uclouvain Openjpeg | =2.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-9581 is high with a severity value of 8.8.
Uclouvain Openjpeg version 2.1.2 is affected by CVE-2016-9581.
The CWE of CVE-2016-9581 are 119, 122, and 835.
Unfortunately, there is no available fix or patch for CVE-2016-9581 at this time. It is recommended to update to a newer version of Uclouvain Openjpeg if one becomes available.
You can find more information about CVE-2016-9581 at the following references: [SecurityFocus](http://www.securityfocus.com/bid/94822), [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9581), [GitHub Commit](https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255)