CVE-2016-9573
published 2018-08-01CVE-2016-9573: An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could…
PriorityP335high8.1CVSS 3.0
AVNACLPRNUIRSUCHINAH
EPSS
2.56%
83.4th percentile
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | openjpeg2 | < openjpeg2 2.1.2-1.1 (bookworm) | openjpeg2 2.1.2-1.1 (bookworm) |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_workstation | — | — |
| the_openjpeg_project | openjpeg | — | — |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1.1 | 2.1.2-1.1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1.1 | 2.1.2-1.1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1.1 | 2.1.2-1.1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1.1 | 2.1.2-1.1 |
| uclouvain | openjpeg | — | — |
CVSS provenance
nvdv3.08.1HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:P
osv8.1HIGH
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f6vv-86p4-jjqr: An out-of-bounds read vulnerability was found in OpenJPEG 2
ghsa_unreviewed·2022-05-13
CVE-2016-9573 [HIGH] CWE-125 GHSA-f6vv-86p4-jjqr: An out-of-bounds read vulnerability was found in OpenJPEG 2
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
OSV
CVE-2016-9573: An out-of-bounds read vulnerability was found in OpenJPEG 2
osv·2018-08-01·CVSS 8.1
CVE-2016-9573 [HIGH] CVE-2016-9573: An out-of-bounds read vulnerability was found in OpenJPEG 2
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
Red Hat
openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
vendor_redhat·2016-11-02·CVSS 6.5
CVE-2016-9573 [MEDIUM] CWE-125 openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
An out-of-bounds read vulnerability was found in OpenJPEG, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
Package: openjpeg (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2016-9573: openjpeg2 - An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_i...
vendor_debian·2016·CVSS 6.5
CVE-2016-9573 [MEDIUM] CVE-2016-9573: openjpeg2 - An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_i...
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
Scope: local
bookworm: resolved (fixed in 2.1.2-1.1)
bullseye: resolved (fixed in 2.1.2-1.1)
forky: resolved (fixed in 2.1.2-1.1)
sid: resolved (fixed in 2.1.2-1.1)
trixie: resolved (fixed in 2.1.2-1.1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-9573 openjpeg2: openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm() [epel-7]
bugzilla·2017-03-23·CVSS 6.5
CVE-2016-9573 [MEDIUM] CVE-2016-9573 openjpeg2: openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm() [epel-7]
CVE-2016-9573 openjpeg2: openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm() [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the fol
Bugzilla
CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [epel-6]
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [epel-6]
CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
openjpeg2-2.3.0-6.el6 has been submitted as an update to Fe
Bugzilla
CVE-2016-9572 openjpeg: NULL pointer dereference in input decoding
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9572 [MEDIUM] CVE-2016-9572 openjpeg: NULL pointer dereference in input decoding
CVE-2016-9572 openjpeg: NULL pointer dereference in input decoding
A NULL pointer dereference flaw was found in the way openjpeg decoded certain input images. Due to a logic error in the code responsible for decoding the input image, an application using openjpeg to process image data could crash when processing a crafted image.
Upstream bug:
https://github.com/uclouvain/openjpeg/issues/863
Upstream patch:
https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d
Note that the above patch fixes two issues: CVE-2016-9573 as well as CVE-2016-9572.
Discussion:
Acknowledgments:
Name: Liu Bingchang (IIE)
---
Created mingw-openjpeg tracking bugs for this issue:
Affects: fedora-all [bug 1402721]
Created mingw-openjpeg2 tracking bugs for this issue:
Affect
Bugzilla
CVE-2016-9573 CVE-2016-9572 mingw-openjpeg: various flaws [fedora-all]
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 CVE-2016-9572 mingw-openjpeg: various flaws [fedora-all]
CVE-2016-9573 CVE-2016-9572 mingw-openjpeg: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fed
Bugzilla
CVE-2016-9573 openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
CVE-2016-9573 openjpeg: heap out-of-bounds read due to insufficient check in imagetopnm()
A heap buffer overflow flaw was found in the way openjpeg decompressed certain input images. Due to an insufficient check in the imagetopnm() function, an application using openjpeg to process image data could crash when processing a crafted image.
Upstream bug:
https://github.com/uclouvain/openjpeg/issues/862
Upstream patch:
https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d
Note that the above patch fixes two issues: CVE-2016-9573 as well as CVE-2016-9572.
Discussion:
Acknowledgments:
Name: Liu Bingchang (IIE)
---
Created mingw-openjpeg tracking bugs for this issue:
Affects: fedora-all [bug 1402721]
Created mingw-openjpeg2 tracking bugs for this issue:
Bugzilla
CVE-2016-9573 CVE-2016-9572 mingw-openjpeg2: various flaws [fedora-all]
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 CVE-2016-9572 mingw-openjpeg2: various flaws [fedora-all]
CVE-2016-9573 CVE-2016-9572 mingw-openjpeg2: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fe
Bugzilla
CVE-2016-9573 CVE-2016-9572 openjpeg: various flaws [fedora-all]
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 CVE-2016-9572 openjpeg: various flaws [fedora-all]
CVE-2016-9573 CVE-2016-9572 openjpeg: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora. W
Bugzilla
CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [fedora-all]
bugzilla·2016-12-08·CVSS 5.9
CVE-2016-9573 [MEDIUM] CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [fedora-all]
CVE-2016-9573 CVE-2016-9572 openjpeg2: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora.
http://rhn.redhat.com/errata/RHSA-2017-0838.htmlhttp://www.securityfocus.com/bid/97073https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9573https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0dhttps://github.com/uclouvain/openjpeg/issues/862https://security.gentoo.org/glsa/201710-26https://www.debian.org/security/2017/dsa-3768http://rhn.redhat.com/errata/RHSA-2017-0838.htmlhttp://www.securityfocus.com/bid/97073https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9573https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0dhttps://github.com/uclouvain/openjpeg/issues/862https://security.gentoo.org/glsa/201710-26https://www.debian.org/security/2017/dsa-3768
2018-08-01
Published