First published: Tue Nov 05 2024(Updated: )
It was discovered that OpenJPEG incorrectly handled certain memory operations when using the command line "-ImgDir" in a directory with a large number of files, leading to an integer overflow vulnerability. An attacker could potentially use this issue to cause a denial of service. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2021-29338) It was discovered that OpenJPEG incorrectly handled decompressing certain .j2k files in sycc420_to_rgb, leading to a heap-based buffer overflow vulnerability. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to execute arbitrary code. (CVE-2021-3575) It was discovered that OpenJPEG incorrectly handled certain memory operations in the opj2_decompress program. An attacker could potentially use this issue to cause a denial of service. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-1122)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libopenjp2-7 | <2.5.0-2ubuntu1.1 | 2.5.0-2ubuntu1.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libopenjpip7 | <2.5.0-2ubuntu1.1 | 2.5.0-2ubuntu1.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libopenjp2-7 | <2.5.0-2ubuntu0.2 | 2.5.0-2ubuntu0.2 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libopenjpip7 | <2.5.0-2ubuntu0.2 | 2.5.0-2ubuntu0.2 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libopenjp2-7 | <2.4.0-6ubuntu0.2 | 2.4.0-6ubuntu0.2 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libopenjp3d7 | <2.4.0-6ubuntu0.2 | 2.4.0-6ubuntu0.2 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libopenjpip7 | <2.4.0-6ubuntu0.2 | 2.4.0-6ubuntu0.2 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libopenjp2-7 | <2.3.1-1ubuntu4.20.04.3 | 2.3.1-1ubuntu4.20.04.3 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libopenjp3d7 | <2.3.1-1ubuntu4.20.04.3 | 2.3.1-1ubuntu4.20.04.3 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libopenjpip7 | <2.3.1-1ubuntu4.20.04.3 | 2.3.1-1ubuntu4.20.04.3 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libopenjp2-7 | <2.3.0-2+deb10u2ubuntu0.1~esm3 | 2.3.0-2+deb10u2ubuntu0.1~esm3 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libopenjp3d7 | <2.3.0-2+deb10u2ubuntu0.1~esm3 | 2.3.0-2+deb10u2ubuntu0.1~esm3 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libopenjpip7 | <2.3.0-2+deb10u2ubuntu0.1~esm3 | 2.3.0-2+deb10u2ubuntu0.1~esm3 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libopenjp2-7 | <2.1.2-1.1+deb9u6ubuntu0.1~esm6 | 2.1.2-1.1+deb9u6ubuntu0.1~esm6 |
Ubuntu Ubuntu | =16.04 | |
All of | ||
ubuntu/libopenjp3d7 | <2.1.2-1.1+deb9u6ubuntu0.1~esm6 | 2.1.2-1.1+deb9u6ubuntu0.1~esm6 |
Ubuntu Ubuntu | =16.04 | |
All of | ||
ubuntu/libopenjpip7 | <2.1.2-1.1+deb9u6ubuntu0.1~esm6 | 2.1.2-1.1+deb9u6ubuntu0.1~esm6 |
Ubuntu Ubuntu | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)