CVE-2019-6988: Medium severity openjpeg vulnerability
An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of service (attempted excessive memory allocation) in opjcalloc in openjp2/opjmalloc.c, when called from opjtcdinittile in openjp2/tcd.c, as demonstrated by the 64-bit opjdecompress.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-6988?
CVE-2019-6988 is a vulnerability discovered in OpenJPEG 2.3.0 that allows remote attackers to cause a denial of service by performing excessive memory allocation.
What is the severity of CVE-2019-6988?
The severity of CVE-2019-6988 is medium, with a severity value of 6.5.
How does CVE-2019-6988 affect OpenJPEG?
CVE-2019-6988 affects OpenJPEG 2.3.0, potentially allowing remote attackers to cause a denial of service.
How can I fix CVE-2019-6988?
To fix CVE-2019-6988, it is recommended to update OpenJPEG to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2019-6988?
You can find more information about CVE-2019-6988 in the references provided: http://www.securityfocus.com/bid/106785 and https://github.com/uclouvain/openjpeg/issues/1178.