ZeroHour

CVE-2016-1681

CVSS 3.0
8.8 high
EPSS
2%p73
Published
()
Modified
Description

Heap-based buffer overflow in the opj_j2k_read_SPCod_SPCoc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 51.0.2704.63, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PDF document.

Vendors
debianopensuseredhatsusegoogle
Products
debian linux, leap, opensuse, enterprise linux desktop, enterprise linux server, enterprise linux workstation, linux enterprise, chrome
Weakness
CWE-119
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news