CVE-2013-6045
published 2013-12-12CVE-2013-6045: Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
PriorityP343high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
5.51%
91.9th percentile
Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_for_ibm_z_systems | — | — |
| redhat | enterprise_linux_for_power_big_endian | — | — |
| redhat | enterprise_linux_for_scientific_computing | — | — |
| uclouvain | openjpeg | < 1.5.2 | 1.5.2 |
| uclouvain | openjpeg | <= 1.3 | — |
| uclouvain | openjpeg | >= 0 < 1.3+dfsg-4.7ubuntu1 | 1.3+dfsg-4.7ubuntu1 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8w7m-78c5-5pmm: Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1
ghsa_unreviewed·2022-05-13·CVSS 5.0
CVE-2014-0158 [MEDIUM] CWE-119 GHSA-8w7m-78c5-5pmm: Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1
Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1.5.2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file because of incorrect j2k_decode, j2k_read_eoc, and tcd_decode_tile interaction, a related issue to CVE-2013-6045. NOTE: this is not a duplicate of CVE-2013-1447, because the scope of CVE-2013-1447 was specifically defined in http://openwall.com/lists/oss-security/2013/12/04/6 as only "null pointer dereferences, division by zero, and anything that would just fit as DoS."
GHSA
GHSA-6xgj-8663-75f9: openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045
ghsa_unreviewed·2022-05-13·CVSS 7.5
CVE-2016-9675 [HIGH] CWE-119 GHSA-6xgj-8663-75f9: openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045
openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045. A crafted j2k image could cause the application to crash, or potentially execute arbitrary code.
GHSA
GHSA-qj5m-cr8m-jr8v: Heap-based buffer overflow in OpenJPEG 1
ghsa_unreviewed·2022-05-13·CVSS 7.5
CVE-2013-6054 [HIGH] CWE-119 GHSA-qj5m-cr8m-jr8v: Heap-based buffer overflow in OpenJPEG 1
Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vulnerability than CVE-2013-6045.
GHSA
GHSA-9mx7-7pm8-8px9: Multiple heap-based buffer overflows in OpenJPEG 1
ghsa_unreviewed·2022-05-13
CVE-2013-6045 [HIGH] CWE-119 GHSA-9mx7-7pm8-8px9: Multiple heap-based buffer overflows in OpenJPEG 1
Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
OSV
CVE-2016-9675: openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045
osv·2016-12-22·CVSS 7.5
CVE-2016-9675 [HIGH] CVE-2016-9675: openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045
openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045. A crafted j2k image could cause the application to crash, or potentially execute arbitrary code.
OSV
CVE-2013-6054: Heap-based buffer overflow in OpenJPEG 1
osv·2013-12-12·CVSS 7.5
CVE-2013-6054 [HIGH] CVE-2013-6054: Heap-based buffer overflow in OpenJPEG 1
Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vulnerability than CVE-2013-6045.
OSV
CVE-2013-6045: Multiple heap-based buffer overflows in OpenJPEG 1
osv·2013-12-12·CVSS 7.5
CVE-2013-6045 [HIGH] CVE-2013-6045: Multiple heap-based buffer overflows in OpenJPEG 1
Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
Red Hat
openjpeg: incorrect fix for CVE-2013-6045
vendor_redhat·2016-09-26·CVSS 7.5
CVE-2016-9675 [HIGH] CWE-122 openjpeg: incorrect fix for CVE-2013-6045
openjpeg: incorrect fix for CVE-2013-6045
openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045. A crafted j2k image could cause the application to crash, or potentially execute arbitrary code.
A vulnerability was found in the patch for CVE-2013-6045 for OpenJPEG. A specially crafted JPEG2000 image, when read by an application using OpenJPEG, could cause heap-based buffer overflows leading to a crash or possible code execution.
Red Hat
openjpeg: heap-based buffer overflows in version 1.3
vendor_redhat·2013-12-04·CVSS 7.5
CVE-2013-6054 [HIGH] CWE-122 openjpeg: heap-based buffer overflows in version 1.3
openjpeg: heap-based buffer overflows in version 1.3
Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vulnerability than CVE-2013-6045.
Package: openjpeg (Red Hat Enterprise Linux 7) - Not affected
Red Hat
openjpeg: heap-based buffer overflows
vendor_redhat·2013-12-04·CVSS 7.5
CVE-2013-6045 [HIGH] CWE-122 openjpeg: heap-based buffer overflows
openjpeg: heap-based buffer overflows
Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
Package: openjpeg (Red Hat Enterprise Linux 7) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
mingw-openjpeg: openjpeg: incorrect fix for CVE-2013-6045 [fedora-all]
bugzilla·2016-10-06·CVSS 7.5
CVE-2013-6045 [HIGH] mingw-openjpeg: openjpeg: incorrect fix for CVE-2013-6045 [fedora-all]
mingw-openjpeg: openjpeg: incorrect fix for CVE-2013-6045 [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora.
Bugzilla
CVE-2016-9675 openjpeg: incorrect fix for CVE-2013-6045
bugzilla·2016-10-06·CVSS 7.5
CVE-2016-9675 [HIGH] CVE-2016-9675 openjpeg: incorrect fix for CVE-2013-6045
CVE-2016-9675 openjpeg: incorrect fix for CVE-2013-6045
A flaw was found in the patch for CVE-2013-6045 for openjpeg-1. A crafted
jpeg2000 image could cause heap-based buffer overflows, leading to a crash or
possible code execution when reading or converting the crafted file.
External reference:
http://seclists.org/oss-sec/2016/q3/624
See also:
https://bugzilla.redhat.com/show_bug.cgi?id=1036495#c20
https://bugs.debian.org/734238
Adjusted patch attached, but see also:
http://pkgs.fedoraproject.org/cgit/rpms/openjpeg.git/commit/?id=ecc78395d2c04b4bc4e37435c2c9c5a603f8910a
Discussion:
Created openjpeg tracking bugs for this issue:
Affects: epel-5 [bug 1382205]
---
Created mingw-openjpeg tracking bugs for this issue:
Affects: fedora-all [bug 1382204]
---
Acknowledgments:
Name:
Bugzilla
openjpeg: incorrect fix for CVE-2013-6045 [epel-5]
bugzilla·2016-10-06·CVSS 7.5
CVE-2013-6045 [HIGH] openjpeg: incorrect fix for CVE-2013-6045 [epel-5]
openjpeg: incorrect fix for CVE-2013-6045 [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
[bug automatically created by: add-tracking-bugs]
Discussion:
Use the follow
Bugzilla
CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 mingw-openjpeg: various flaws [fedora-all]
bugzilla·2013-12-05·CVSS 7.5
CVE-2013-6045 [HIGH] CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 mingw-openjpeg: various flaws [fedora-all]
CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 mingw-openjpeg: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this is
Bugzilla
CVE-2013-6054 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 openjpeg: various flaws [epel-5]
bugzilla·2013-12-05·CVSS 5.0
CVE-2013-6054 [MEDIUM] CVE-2013-6054 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 openjpeg: various flaws [epel-5]
CVE-2013-6054 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 openjpeg: various flaws [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
epel-5 trac
Bugzilla
CVE-2013-6887 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 openjpeg: various flaws [fedora-all]
bugzilla·2013-12-05·CVSS 5.0
CVE-2013-6887 [MEDIUM] CVE-2013-6887 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 openjpeg: various flaws [fedora-all]
CVE-2013-6887 CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 CVE-2013-6053 openjpeg: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Bugzilla
CVE-2013-6045 openjpeg: heap-based buffer overflows
bugzilla·2013-12-02·CVSS 7.5
CVE-2013-6045 [HIGH] CVE-2013-6045 openjpeg: heap-based buffer overflows
CVE-2013-6045 openjpeg: heap-based buffer overflows
Raphael Geissert discovered multiple heap-based buffer overflows in OpenJPEG. If a specially-crafted image were opened by an application linked against OpenJPEG, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.
Discussion:
Created attachment 831461
proposed patch 1
---
Created attachment 831462
proposed patch 2
---
Created attachment 831463
proposed patch 3
---
Created attachment 831464
proposed patch 4
---
Created attachment 831465
proposed patch 5
---
Acknowledgements:
Red Hat would like to thank Raphael Geissert for reporting these issues during a review for EDF.
---
Created openjpeg tracking bugs for this issue:
Affects: fedora-all
http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWShttp://osvdb.org/100636http://osvdb.org/100637http://osvdb.org/100638http://osvdb.org/100641http://osvdb.org/100646http://rhn.redhat.com/errata/RHSA-2013-1850.htmlhttp://seclists.org/oss-sec/2013/q4/412http://www.debian.org/security/2013/dsa-2808http://www.securityfocus.com/bid/64109http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWShttp://osvdb.org/100636http://osvdb.org/100637http://osvdb.org/100638http://osvdb.org/100641http://osvdb.org/100646http://rhn.redhat.com/errata/RHSA-2013-1850.htmlhttp://seclists.org/oss-sec/2013/q4/412http://www.debian.org/security/2013/dsa-2808http://www.securityfocus.com/bid/64109
2013-12-12
Published