REDHAT-BUG-1537758: Integer Overflow
A flaw was found in OpenJPEG 2.3.0, there is an integer overflow caused by an out-of-bounds left shift in the opjj2ksetupencoder function (openjp2/j2k.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.
Reference: https://github.com/uclouvain/openjpeg/issues/1057
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1537758?
The severity of REDHAT-BUG-1537758 is high due to the potential for denial of service from a crafted bmp file.
How do I fix REDHAT-BUG-1537758?
To fix REDHAT-BUG-1537758, update OpenJPEG to the latest version where this vulnerability has been patched.
What causes the vulnerability in REDHAT-BUG-1537758?
REDHAT-BUG-1537758 is caused by an integer overflow due to an out-of-bounds left shift in the opj_j2k_setup_encoder function.
Who is affected by REDHAT-BUG-1537758?
Users and systems running OpenJPEG version 2.3.0 are affected by REDHAT-BUG-1537758.
Can REDHAT-BUG-1537758 be exploited remotely?
Yes, REDHAT-BUG-1537758 can be exploited remotely by attackers using specially crafted bmp files.