CVE-2019-6988

Name
CVE-2019-6988
Description
An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of service (attempted excessive memory allocation) in opj_calloc in openjp2/opj_malloc.c, when called from opj_tcd_init_tile in openjp2/tcd.c, as demonstrated by the 64-bit opj_decompress.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://github.com/uclouvain/openjpeg/issues/1178
Third Party Advisory http://www.securityfocus.com/bid/106785

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:uclouvain:openjpeg:2.3.0:*:*:*:*:*:*:* openjpeg == None == 2.3.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status