CVE-2021-29338: Integer Overflow
Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS). This occurs when the attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-29338?
CVE-2021-29338 is an integer overflow vulnerability in OpenJPEG v2.4.0 that allows remote attackers to crash the application, causing a Denial of Service (DoS).
How does CVE-2021-29338 affect Uclouvain Openjpeg?
CVE-2021-29338 affects Uclouvain Openjpeg 2.4.0, causing it to crash when an attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.
How does CVE-2021-29338 affect Fedoraproject Fedora 33 and 34?
CVE-2021-29338 affects Fedoraproject Fedora 33 and 34, causing the application to crash when an attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.
How does CVE-2021-29338 affect Debian Debian Linux 9.0?
CVE-2021-29338 affects Debian Debian Linux 9.0, causing the application to crash when an attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.
What is the severity of CVE-2021-29338?
CVE-2021-29338 has a severity rating of 5.5, which is considered medium.
How can I mitigate the CVE-2021-29338 vulnerability?
To mitigate the CVE-2021-29338 vulnerability, it is recommended to update OpenJPEG to a version that is not affected by this vulnerability.