VendorsUclouvainopenjpegany version
Vulnerabilities

Uclouvain Université Catholique de Louvain OpenJPEG any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

46CVEs
CVE-2020-27845
There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is able to provide untrusted input to openjpeg's conversion/encoding functionality, they could cause an out-of-bounds read. The highest impact of this flaw is to application availability.
Published 2021-01-05 · Modified
5.5EPSS 0.015
CVE-2020-27841
There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by the openjpeg encoder, this could cause an out-of-bounds read. The greatest impact from this flaw is to application availability.
Published 2021-01-05 · Modified
5.5EPSS 0.014
CVE-2023-39328
Openjpeg: denail of service via crafted image file
Published 2024-07-09 · Modified
5.5EPSS 0.002
CVE-2013-1447
OpenJPEG 1.3 and earlier allows remote attackers to cause a denial of service (memory consumption or crash) via unspecified vectors related to NULL pointer dereferences, division-by-zero, and other errors.
Published 2013-12-12 · Modified
5.0EPSS 0.025
CVE-2013-6052
OpenJPEG 1.3 and earlier allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read.
Published 2013-12-12 · Modified
5.0EPSS 0.022
CVE-2023-39327
Openjpeg: malicious files can cause the program to enter a large loop
Published 2024-07-13 · Modified
4.3EPSS 0.006
← Prev2 / 2