Debian Openjpeg2 vulnerabilities
64 known vulnerabilities affecting debian/openjpeg2.
Total CVEs
64
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH20MEDIUM27LOW15
Vulnerabilities
Page 2 of 4
CVE-2016-5158P3HIGHCVSS 8.8fixed in openjpeg2 2.1.2-1 (bookworm)2016
CVE-2016-5158 [HIGH] CVE-2016-5158: openjpeg2 - Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPE...
Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted JPEG 2000 data.
Scope: local
bookworm: re
debian
CVE-2015-6581P3HIGHCVSS 7.5fixed in openjpeg2 2.1.1-1 (bookworm)2015
CVE-2015-6581 [HIGH] CVE-2015-6581: openjpeg2 - Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd functio...
Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 45.0.2454.85, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by triggering a memory-allocation failure.
Scope: local
bookworm: resolved (fixed in 2.1.1-
debian
CVE-2016-8332P3HIGHCVSS 7.5fixed in openjpeg2 2.1.2-1 (bookworm)2016
CVE-2016-8332 [HIGH] CVE-2016-8332: openjpeg2 - A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing...
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. F
debian
CVE-2020-27823P3HIGHCVSS 7.8fixed in openjpeg2 2.4.0-1 (bookworm)2020
CVE-2020-27823 [HIGH] CVE-2020-27823: openjpeg2 - A flaw was found in OpenJPEG’s encoder. This flaw allows an attacker to pass spe...
A flaw was found in OpenJPEG’s encoder. This flaw allows an attacker to pass specially crafted x,y offset input to OpenJPEG to use during encoding. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Scope: local
bookworm: resolved (fixed in 2.4.0-1)
bullseye: resolved (fixed in 2.4.0-1)
forky: resolved (fix
debian
CVE-2020-27814P3HIGHCVSS 7.8fixed in openjpeg2 2.4.0-1 (bookworm)2020
CVE-2020-27814 [HIGH] CVE-2020-27814: openjpeg2 - A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format...
A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash or in some cases execute arbitrary code with the permission of the user running such an application.
Scope: local
bookworm: resolved (fixed in 2.4.0-1)
bullseye: resolved (fixed in 2.4.0-1)
forky: resolved (fixed in
debian
CVE-2021-3575P3HIGHCVSS 7.8fixed in openjpeg2 2.5.0-2+deb12u1 (bookworm)2021
CVE-2021-3575 [HIGH] CVE-2021-3575: openjpeg2 - A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_...
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
Scope: local
bookworm: resolved (fixed in 2.5.0-2+deb12u1)
bullseye: resolved (fixed in 2.4.0-3+deb11u1)
forky: resolved
debian
CVE-2016-9112P3HIGHCVSS 7.5fixed in openjpeg2 2.1.2-1.2 (bookworm)2016
CVE-2016-9112 [HIGH] CVE-2016-9112: openjpeg2 - Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl functio...
Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl function in openjp2/pi.c:523 in OpenJPEG 2.1.2.
Scope: local
bookworm: resolved (fixed in 2.1.2-1.2)
bullseye: resolved (fixed in 2.1.2-1.2)
forky: resolved (fixed in 2.1.2-1.2)
sid: resolved (fixed in 2.1.2-1.2)
trixie: resolved (fixed in 2.1.2-1.2)
debian
CVE-2016-9573P3MEDIUMCVSS 6.5fixed in openjpeg2 2.1.2-1.1 (bookworm)2016
CVE-2016-9573 [MEDIUM] CVE-2016-9573: openjpeg2 - An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_i...
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap.
Scope: local
bookworm: resolved (fixed in 2.1.2-1.1)
bullseye: resolved (fixed in 2.1.2-1.1)
forky: resolved (fixed in 2.1.2
debian
CVE-2016-1628P4MEDIUMCVSS 6.3fixed in openjpeg2 2.1.2-1.2 (bookworm)2016
CVE-2016-1628 [MEDIUM] CVE-2016-1628: openjpeg2 - pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does ...
pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does not validate a certain precision value, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted JPEG 2000 image in a PDF document, related to the opj_pi_next_rpcl, opj_pi_next_pcrl, and opj_pi_next_cprl functions.
Scope: l
debian
CVE-2016-7445P4LOWCVSS 7.5fixed in openjpeg2 2.1.2-1 (bookworm)2016
CVE-2016-7445 [HIGH] CVE-2016-7445: openjpeg2 - convert.c in OpenJPEG before 2.1.2 allows remote attackers to cause a denial of ...
convert.c in OpenJPEG before 2.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors involving the variable s.
Scope: local
bookworm: resolved (fixed in 2.1.2-1)
bullseye: resolved (fixed in 2.1.2-1)
forky: resolved (fixed in 2.1.2-1)
sid: resolved (fixed in 2.1.2-1)
trixie: resolved (fixed in 2.1.2-1)
debian
CVE-2020-15389P4MEDIUMCVSS 6.5fixed in openjpeg2 2.4.0-1 (bookworm)2020
CVE-2020-15389 [MEDIUM] CVE-2020-15389: openjpeg2 - jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be ...
jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.
Scope: local
bookworm: resolved (fixed in 2.4.0-1)
bullseye: resolved (fixed in 2.
debian
CVE-2016-5139P4HIGHCVSS 7.6fixed in openjpeg2 2.1.2-1 (bookworm)2016
CVE-2016-5139 [HIGH] CVE-2016-5139: openjpeg2 - Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPE...
Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted JPEG 2000 data.
Scope: local
bookworm: resolved (fixed in 2.1.2-1)
bullseye: resolved (fixed
debian
CVE-2018-14423P4LOWCVSS 7.5fixed in openjpeg2 2.3.0-2 (bookworm)2018
CVE-2018-14423 [HIGH] CVE-2018-14423: openjpeg2 - Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, an...
Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in lib/openjp3d/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash).
Scope: local
bookworm: resolved (fixed in 2.3.0-2)
bullseye: resolved (fixed in 2.3.0-2)
forky: resolved (fixed in 2.3.0-2)
sid: resolved (fixed in 2.3
debian
CVE-2025-50952P4MEDIUMCVSS 6.5fixed in openjpeg2 2.5.0-2+deb12u2 (bookworm)2025
CVE-2025-50952 [MEDIUM] CVE-2025-50952: openjpeg2 - openjpeg v 2.5.0 was discovered to contain a NULL pointer dereference via the co...
openjpeg v 2.5.0 was discovered to contain a NULL pointer dereference via the component /openjp2/dwt.c.
Scope: local
bookworm: resolved (fixed in 2.5.0-2+deb12u2)
bullseye: resolved (fixed in 2.4.0-3+deb11u2)
forky: resolved (fixed in 2.5.3-1)
sid: resolved (fixed in 2.5.3-1)
trixie: resolved (fixed in 2.5.3-1)
debian
CVE-2016-9118P4MEDIUMCVSS 5.3fixed in openjpeg2 2.1.2-1.2 (bookworm)2016
CVE-2016-9118 [MEDIUM] CVE-2016-9118: openjpeg2 - Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 ...
Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2.
Scope: local
bookworm: resolved (fixed in 2.1.2-1.2)
bullseye: resolved (fixed in 2.1.2-1.2)
forky: resolved (fixed in 2.1.2-1.2)
sid: resolved (fixed in 2.1.2-1.2)
trixie: resolved (fixed in 2.1.2-1.2)
debian
CVE-2016-1923P4MEDIUMCVSS 6.5fixed in openjpeg2 2.1.1-1 (bookworm)2016
CVE-2016-1923 [MEDIUM] CVE-2016-1923: openjpeg2 - Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg...
Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.
Scope: local
bookworm: resolved (fixed in 2.1.1-1)
bullseye: resolved (fixed in 2.1.1-1)
forky: resolved (fixed in 2.1.1-1)
sid: resolved (fixed in
debian
CVE-2016-9572P4MEDIUMCVSS 5.9fixed in openjpeg2 2.1.2-1.1 (bookworm)2016
CVE-2016-9572 [MEDIUM] CVE-2016-9572: openjpeg2 - A NULL pointer dereference flaw was found in the way openjpeg 2.1.2 decoded cert...
A NULL pointer dereference flaw was found in the way openjpeg 2.1.2 decoded certain input images. Due to a logic error in the code responsible for decoding the input image, an application using openjpeg to process image data could crash when processing a crafted image.
Scope: local
bookworm: resolved (fixed in 2.1.2-1.1)
bullseye: resolved (fixed in 2.1.2-1.1)
for
debian
CVE-2016-1924P4MEDIUMCVSS 6.5fixed in openjpeg2 2.1.1-1 (bookworm)2016
CVE-2016-1924 [MEDIUM] CVE-2016-1924: openjpeg2 - The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to caus...
The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.
Scope: local
bookworm: resolved (fixed in 2.1.1-1)
bullseye: resolved (fixed in 2.1.1-1)
forky: resolved (fixed in 2.1.1-1)
sid: resolved (fixed in 2.1.1-1)
trixie: resolved (fixed in 2.1.1-
debian
CVE-2016-10507P4MEDIUMCVSS 6.5fixed in openjpeg2 2.1.2-1 (bookworm)2016
CVE-2016-10507 [MEDIUM] CVE-2016-10507: openjpeg2 - Integer overflow vulnerability in the bmp24toimage function in convertbmp.c in O...
Integer overflow vulnerability in the bmp24toimage function in convertbmp.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted bmp file.
Scope: local
bookworm: resolved (fixed in 2.1.2-1)
bullseye: resolved (fixed in 2.1.2-1)
forky: resolved (fixed in 2.1.2-1)
sid: resol
debian
CVE-2016-4796P4MEDIUMCVSS 5.5fixed in openjpeg2 2.1.1-1 (bookworm)2016
CVE-2016-4796 [MEDIUM] CVE-2016-4796: openjpeg2 - Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPE...
Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.
Scope: local
bookworm: resolved (fixed in 2.1.1-1)
bullseye: resolved (fixed in 2.1.1-1)
forky: resolved (fixed in 2.1.1-1)
sid: resolved (fixed in 2.1.1-1)
trixie: resolved (fixed in 2
debian