First published: Mon Jan 13 2020(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenJPEG | <=2.3.1 | |
Fedoraproject Fedora | =30 | |
Fedoraproject Fedora | =31 | |
Debian GNU/Linux | =8.0 | |
Debian GNU/Linux | =9.0 | |
Debian GNU/Linux | =10.0 | |
Red Hat Enterprise Linux | =8.0 | |
redhat enterprise Linux desktop | =7.0 | |
redhat enterprise Linux eus | =7.7 | |
redhat enterprise Linux eus | =8.1 | |
redhat enterprise Linux eus | =8.2 | |
redhat enterprise Linux eus | =8.4 | |
redhat enterprise Linux server | =7.0 | |
redhat enterprise Linux server aus | =7.7 | |
redhat enterprise Linux server aus | =8.2 | |
redhat enterprise Linux server aus | =8.4 | |
redhat enterprise Linux server tus | =7.7 | |
redhat enterprise Linux server tus | =8.2 | |
redhat enterprise Linux server tus | =8.4 | |
redhat enterprise Linux workstation | =7.0 | |
Oracle GeoRaster | =18c | |
Oracle Outside In Technology | =8.5.4 | |
Oracle Outside In Technology | =8.5.5 | |
debian/openjpeg2 | 2.4.0-3 2.5.0-2+deb12u1 2.5.0-2 2.5.3-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6851 is a vulnerability in OpenJPEG that allows for a heap-based buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c.
The severity of CVE-2020-6851 is high, with a severity value of 7.5.
CVE-2020-6851 affects OpenJPEG versions up to 2.3.1.
The recommended remedy for CVE-2020-6851 is to update OpenJPEG to version 2.3.1-1ubuntu4 or higher.
You can find more information about CVE-2020-6851 on the CVE website and the Ubuntu security notices.