CVE-2021-3575
published 2022-03-04CVE-2021-3575: A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to…
PriorityP336high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.54%
72.2th percentile
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openjpeg2 | < openjpeg2 2.5.0-2+deb12u1 (bookworm) | openjpeg2 2.5.0-2+deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.4.0-3+deb11u1 | 2.4.0-3+deb11u1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.5.0-2+deb12u1 | 2.5.0-2+deb12u1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.5.3-1 | 2.5.3-1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.5.3-1 | 2.5.3-1 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.3.1-1ubuntu4.20.04.3 | 2.3.1-1ubuntu4.20.04.3 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.4.0-6ubuntu0.2 | 2.4.0-6ubuntu0.2 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.5.0-2ubuntu0.2 | 2.5.0-2ubuntu0.2 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.1.2-1.1+deb9u6ubuntu0.1~esm6 | 2.1.2-1.1+deb9u6ubuntu0.1~esm6 |
| the_openjpeg_project | openjpeg2 | >= 0 < 2.3.0-2+deb10u2ubuntu0.1~esm3 | 2.3.0-2+deb10u2ubuntu0.1~esm3 |
| uclouvain | openjpeg | <= 2.4.0 | — |
| uclouvain | openjpeg | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenJPEG vulnerabilities
vendor_ubuntu·2024-11-05·CVSS 5.5
CVE-2021-3575 [MEDIUM] OpenJPEG vulnerabilities
Title: OpenJPEG vulnerabilities
Summary: Several security issues were fixed in OpenJPEG.
It was discovered that OpenJPEG incorrectly handled certain memory
operations when using the command line "-ImgDir" in a directory with a
large number of files, leading to an integer overflow vulnerability. An
attacker could potentially use this issue to cause a denial of service.
This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2021-29338)
It was discovered that OpenJPEG incorrectly handled decompressing certain
.j2k files in sycc420_to_rgb, leading to a heap-based buffer overflow
vulnerability. If a user or automated system were tricked into opening
a specially crafted file, an attacker could possibly use this issue to
execute arbitrary code.
Red Hat
openjpeg: heap-buffer-overflow in color.c may lead to DoS or arbitrary code execution
vendor_redhat·2021-05-01·CVSS 7.8
CVE-2021-3575 [HIGH] CWE-787 openjpeg: heap-buffer-overflow in color.c may lead to DoS or arbitrary code execution
openjpeg: heap-buffer-overflow in color.c may lead to DoS or arbitrary code execution
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
A heap-based buffer overflow was found in OpenJPEG. This flaw allows an attacker to execute arbitrary code with the permissions of the application compiled against OpenJPEG.
Package: openjpeg (Red Hat Enterprise Linux 6) - Out of support scope
Package: openjpeg (Red Hat Enterprise Linux 7) - Out of support scope
Package: openjpeg2 (Red Hat Enterprise Linux 7) - Out of support scope
Package: openjpeg2 (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2021-3575: openjpeg2 - A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_...
vendor_debian·2021·CVSS 7.8
CVE-2021-3575 [HIGH] CVE-2021-3575: openjpeg2 - A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_...
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
Scope: local
bookworm: resolved (fixed in 2.5.0-2+deb12u1)
bullseye: resolved (fixed in 2.4.0-3+deb11u1)
forky: resolved (fixed in 2.5.3-1)
sid: resolved (fixed in 2.5.3-1)
trixie: resolved (fixed in 2.5.3-1)
OSV
openjpeg2 vulnerabilities
osv·2024-11-05·CVSS 5.5
CVE-2021-29338 [MEDIUM] openjpeg2 vulnerabilities
openjpeg2 vulnerabilities
It was discovered that OpenJPEG incorrectly handled certain memory
operations when using the command line "-ImgDir" in a directory with a
large number of files, leading to an integer overflow vulnerability. An
attacker could potentially use this issue to cause a denial of service.
This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2021-29338)
It was discovered that OpenJPEG incorrectly handled decompressing certain
.j2k files in sycc420_to_rgb, leading to a heap-based buffer overflow
vulnerability. If a user or automated system were tricked into opening
a specially crafted file, an attacker could possibly use this issue to
execute arbitrary code. (CVE-2021-3575)
It was discovered that OpenJPEG incorrectly ha
GHSA
GHSA-j3vw-4g3g-wvjc: A heap-based buffer overflow was found in openjpeg in color
ghsa_unreviewed·2022-03-05
CVE-2021-3575 [HIGH] CWE-787 GHSA-j3vw-4g3g-wvjc: A heap-based buffer overflow was found in openjpeg in color
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
OSV
CVE-2021-3575: A heap-based buffer overflow was found in openjpeg in color
osv·2022-03-04·CVSS 7.8
CVE-2021-3575 [HIGH] CVE-2021-3575: A heap-based buffer overflow was found in openjpeg in color
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=1957616https://github.com/uclouvain/openjpeg/issues/1347https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZ54FGM2IGAP4AWSJ22JKHOPHCR3FGYU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QB6AI7CWXWMEDZIQY4LQ6DMIEXMDOHUP/https://ubuntu.com/security/CVE-2021-3575https://bugzilla.redhat.com/show_bug.cgi?id=1957616https://github.com/uclouvain/openjpeg/issues/1347https://lists.debian.org/debian-lts-announce/2025/04/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZ54FGM2IGAP4AWSJ22JKHOPHCR3FGYU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QB6AI7CWXWMEDZIQY4LQ6DMIEXMDOHUP/https://ubuntu.com/security/CVE-2021-3575
2022-03-04
Published