cbcvebase.
CVE-2016-9580
published 2018-08-01

CVE-2016-9580: An integer overflow vulnerability was found in tiftoimage function in openjpeg 2.1.2, resulting in heap buffer overflow.

high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
An integer overflow vulnerability was found in tiftoimage function in openjpeg 2.1.2, resulting in heap buffer overflow.

Affected

3 ranges
VendorProductVersion rangeFixed in
debianopenjpeg2
the_openjpeg_projectopenjpeg2
uclouvainopenjpeg

CVSS provenance

nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH