Lucene search

K
osvGoogleOSV:CVE-2019-6988
HistoryJan 28, 2019 - 4:29 p.m.

CVE-2019-6988

2019-01-2816:29:00
Google
osv.dev
10

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.9%

An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of service (attempted excessive memory allocation) in opj_calloc in openjp2/opj_malloc.c, when called from opj_tcd_init_tile in openjp2/tcd.c, as demonstrated by the 64-bit opj_decompress.

CPENameOperatorVersion
openjpegeq2.2.0
openjpegeq2.3.0

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.9%