CVE-2015-6581 — Out-of-bounds Write in Google Chrome
10 documents7 sources
Severity
7.5HIGHNVD
EPSS
2.3%
top 15.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 3
Latest updateMay 17
Description
Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 45.0.2454.85, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by triggering a memory-allocation failure.
CVSS vector
AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4
Affected Packages2 packages
🔴Vulnerability Details
3GHSAâ–¶
GHSA-gphr-q83r-f4gv: Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k↗2022-05-17
OSVâ–¶
CVE-2015-6581: Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k↗2015-09-03
CVEListâ–¶
CVE-2015-6581: Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k↗2015-09-03
📋Vendor Advisories
2💬Community
4Bugzillaâ–¶
CVE-2015-6581 openjpeg2: openjpeg: Double free vulnerability in opj_j2k_copy_default_tcp_and_create_tcd [fedora-all]↗2015-10-01
Bugzillaâ–¶
CVE-2015-6581 openjpeg: Double free vulnerability in opj_j2k_copy_default_tcp_and_create_tcd [fedora-all]↗2015-10-01
Bugzillaâ–¶
CVE-2015-6581 openjpeg: Double free vulnerability in opj_j2k_copy_default_tcp_and_create_tcd↗2015-10-01
Bugzillaâ–¶
CVE-2015-6581 mingw-openjpeg: openjpeg: Double free vulnerability in opj_j2k_copy_default_tcp_and_create_tcd [fedora-all]↗2015-10-01