LWN.net Logo

openjpeg: code execution

Package(s):openjpeg CVE #(s):CVE-2009-5030
Created:June 28, 2012 Updated:July 11, 2012
Description:

From the Red Hat bug report:

An out-of heap-based buffer bounds read and write flaw, leading to invalid free, was found in the way a tile coder / decoder (TCD) implementation of OpenJPEG, an open-source JPEG 2000 codec written in C language, performed releasing of previously allocated memory for the TCD encoder handle by processing certain Gray16 TIFF images. A remote attacker could provide a specially-crafted TIFF image file, which once converted into the JPEG 2000 file format with an application linked against OpenJPEG (such as 'image_to_j2k'), would lead to that application crash, or, potentially arbitrary code execution with the privileges of the user running the application.

Alerts:
Fedora FEDORA-2012-9628 2012-06-28
Fedora FEDORA-2012-9602 2012-06-28
Mageia MGASA-2012-0152 2012-07-10
Red Hat RHSA-2012:1068-01 2012-07-11
CentOS CESA-2012:1068 2012-07-11
Mandriva MDVSA-2012:104 2012-07-12
Oracle ELSA-2012-1068 2012-07-11
Scientific Linux SL-open-20120711 2012-07-11
Debian DSA-2629-1 2013-02-25
Mandriva MDVSA-2013:110 2013-04-10

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds