CVE-2016-8332
published 2016-10-28CVE-2016-8332: A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the…
PriorityP338high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
2.56%
83.5th percentile
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openjpeg2 | < openjpeg2 2.1.2-1 (bookworm) | openjpeg2 2.1.2-1 (bookworm) |
| android | — | — | |
| openjpeg | openjpeg | — | — |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1 | 2.1.2-1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1 | 2.1.2-1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1 | 2.1.2-1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1 | 2.1.2-1 |
| uclouvain | openjpeg | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2016-8332: Android Security Bulletin 2017-06-01
CVE: CVE-2016-8332
Severity: HIGH
Type: RCE
Affected AOSP versions: 5
vendor_android·2017-06-01·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332: Android Security Bulletin 2017-06-01
CVE: CVE-2016-8332
Severity: HIGH
Type: RCE
Affected AOSP versions: 5
Android Security Bulletin 2017-06-01
CVE: CVE-2016-8332
Severity: HIGH
Type: RCE
Affected AOSP versions: 5.0.2, 5.1.1, 6.0, 6.0.1
References: A-37761553*
Red Hat
openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
vendor_redhat·2016-09-29·CVSS 7.5
CVE-2016-8332 [HIGH] CWE-787 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
Package: openjpeg (Red Hat Enterprise Linux 6) - Not affected
Package: openjpeg (Red
Debian
CVE-2016-8332: openjpeg2 - A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing...
vendor_debian·2016·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332: openjpeg2 - A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing...
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
Scope: local
bookworm: resolved (fixed in 2.1.2-1)
bullseye: resolved (fixed in 2.1.2-1)
forky: resolved (fixed in 2.1.2-1)
sid: resolved (fixed in
GHSA
GHSA-qxqh-jjhc-4wfg: A buffer overflow in OpenJPEG 2
ghsa_unreviewed·2022-05-13
CVE-2016-8332 [HIGH] CWE-119 GHSA-qxqh-jjhc-4wfg: A buffer overflow in OpenJPEG 2
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
OSV
CVE-2016-8332: A buffer overflow in OpenJPEG 2
osv·2016-10-28·CVSS 7.8
CVE-2016-8332 [HIGH] CVE-2016-8332: A buffer overflow in OpenJPEG 2
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-8332 mingw-openjpeg2: openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
bugzilla·2016-10-04·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332 mingw-openjpeg2: openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
CVE-2016-8332 mingw-openjpeg2: openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multi
Bugzilla
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
bugzilla·2016-10-03·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ver
Bugzilla
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
bugzilla·2016-10-03·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability
An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector.
External References:
http://www.talosintelligence.com/reports/TALOS-2016-0193/
Discussion:
Created openjpeg2 tracking bugs for this issue:
Affects: fedora-all [bug 13
Bugzilla
CVE-2016-8332 CVE-2016-9112 CVE-2016-9113 CVE-2016-9114 CVE-2016-9115 CVE-2016-9116 CVE-2016-9117 CVE-2016-9118 openjpeg2: various flaws [epel-all]
bugzilla·2016-10-03·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332 CVE-2016-9112 CVE-2016-9113 CVE-2016-9114 CVE-2016-9115 CVE-2016-9116 CVE-2016-9117 CVE-2016-9118 openjpeg2: various flaws [epel-all]
CVE-2016-8332 CVE-2016-9112 CVE-2016-9113 CVE-2016-9114 CVE-2016-9115 CVE-2016-9116 CVE-2016-9117 CVE-2016-9118 openjpeg2: various flaws [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpk
Bugzilla
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
bugzilla·2016-10-03·CVSS 7.5
CVE-2016-8332 [HIGH] CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
CVE-2016-8332 openjpeg2: JPEG2000 mcc record Code Execution Vulnerability [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ver
arXiv
o-glasses: Visualizing x86 Code from Binary Using a 1d-CNN
arxiv_fulltext·2018-06-14
o-glasses: Visualizing x86 Code from Binary Using a 1d-CNN
o-glasses: Visualizing x86 Code from Binary Using a 1d-CNN
Yuhei Otsubo12
Akira Otsuka2
Mamoru Mimura32
Takeshi Sakaki4
Atsuhiro Goto2
National Police Agency, Tokyo, Japan
Institute of Information Security, Kanagawa, Japan
[email protected]
National Defense Academy, Kanagawa, Japan
The University of Tokyo, Tokyo, Japan
## Abstract
Malicious document files used in targeted attacks often contain a small program called shellcode.
It is often hard to prepare a runnable environment for dynamic analysis of these document files because they exploit specific vulnerabilities.
In these cases, it is necessary to identify the position of the shellcode in each document file to analyze it.
If the exploit code uses executable scripts such as JavaScript and Flash, it is not so hard to locate the s
Talos
Vulnerability Spotlight: OpenJPEG JPEG2000 mcc record Code Execution Vulnerability
blogs_talos·2016-10-01·CVSS 7.5
CVE-2016-8332 [HIGH] Vulnerability Spotlight: OpenJPEG JPEG2000 mcc record Code Execution Vulnerability
Vulnerability discovered by Aleksandar Nikolic of Cisco Talos
## Overview Talos has identified an exploitable out-of-bounds vulnerability in the JPEG 2000 image file format parser implemented in OpenJPEG library (TALOS-2016-0193/CVE-2016-8332). The JPEG 2000 file format is commonly used for embedding images inside PDF documents. This particular vulnerability could allow an out-of-bound heap write to occur, resulting in heap corruption and lead to arbitrary code execution. Talos has disclosed this vulnerability responsibily to the library maintainers to ensure a patch is available.
Exploitation of this vulnerability is possible if a user were to open a file containing a specifically crafted JPEG 2000 image that exploits this flaw. Examples where this could be achieved would be in an email
http://www.debian.org/security/2017/dsa-3768http://www.securityfocus.com/bid/93242http://www.securitytracker.com/id/1038623http://www.talosintelligence.com/reports/TALOS-2016-0193/https://github.com/uclouvain/openjpeg/releases/tag/v2.1.2https://www.oracle.com/security-alerts/cpujul2020.htmlhttp://www.debian.org/security/2017/dsa-3768http://www.securityfocus.com/bid/93242http://www.securitytracker.com/id/1038623http://www.talosintelligence.com/reports/TALOS-2016-0193/https://github.com/uclouvain/openjpeg/releases/tag/v2.1.2https://www.oracle.com/security-alerts/cpujul2020.html
2016-10-28
Published