Wind River Support Network

HomeDefectsLIN9-6587
Fixed

LIN9-6587 : Security Advisory - openjpeg - CVE-2018-7648

Created: Mar 15, 2018    Updated: Dec 24, 2018
Resolved Date: Apr 10, 2018
Found In Version: 9.0.0.14
Fix Version: 9.0.0.15
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

An issue was discovered in mj2/opj_mj2_extract.c in OpenJPEG 2.3.0. The output prefix was not checked for length, which could overflow a buffer, when providing a prefix with 50 or more characters on the command line.

https://nvd.nist.gov/vuln/detail/CVE-2018-7648

Other Downloads


CVEs


Live chat
Online