First published: Wed Jan 01 2025(Updated: )
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/openjpeg2 | <=2.4.0-3<=2.5.0-2 | |
OpenJPEG |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-56826 has been classified as a high severity vulnerability due to the potential for application crashes or undefined behaviors.
To mitigate CVE-2024-56826, upgrade OpenJPEG to version 2.5.0-3 or later.
CVE-2024-56826 affects OpenJPEG versions up to and including 2.4.0-3 and 2.5.0-2.
CVE-2024-56826 is a heap buffer overflow vulnerability found in the OpenJPEG project.
The consequences of CVE-2024-56826 can include application crashes and undefined behavior in affected systems.