Lucene search

K
cvelistRedhatCVELIST:CVE-2020-27844
HistoryJan 05, 2021 - 5:43 p.m.

CVE-2020-27844

2021-01-0517:43:49
CWE-20
redhat
www.cve.org
8
openjpeg
vulnerability
out-of-bounds
write
confidentiality
integrity
availability

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

44.4%

A flaw was found in openjpeg’s src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg during conversion and encoding, causing an out-of-bounds write. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CNA Affected

[
  {
    "product": "openjpeg",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "openjpeg 2.4.0"
      }
    ]
  }
]