CVE-2016-9580 — Heap-based Buffer Overflow in Openjpeg Project Openjpeg2
Severity
8.8HIGHNVD
CNA3.3
EPSS
0.4%
top 40.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 1
Latest updateMay 13
Description
An integer overflow vulnerability was found in tiftoimage function in openjpeg 2.1.2, resulting in heap buffer overflow.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages2 packages
Patches
🔴Vulnerability Details
3GHSA▶
GHSA-xhm3-jc6v-q54x: An integer overflow vulnerability was found in tiftoimage function in openjpeg 2↗2022-05-13
CVEList▶
CVE-2016-9580: An integer overflow vulnerability was found in tiftoimage function in openjpeg 2↗2018-08-01
OSV▶
CVE-2016-9580: An integer overflow vulnerability was found in tiftoimage function in openjpeg 2↗2018-08-01
📋Vendor Advisories
2💬Community
6Bugzilla
▶