ZeroHour

CVE-2016-7163

PoC
CVSS 3.1
7.8 high
EPSS
7%p94
Published
()
Modified
Description

Integer overflow in the opj_pi_create_decode function in pi.c in OpenJPEG allows remote attackers to execute arbitrary code via a crafted JP2 file, which triggers an out-of-bounds read or write.

Vendors
uclouvaindebianfedoraprojectredhat
Products
openjpeg, debian linux, fedora, enterprise linux desktop, enterprise linux eus, enterprise linux server, enterprise linux server aus, enterprise linux server tus, enterprise linux workstation
Weakness
CWE-190
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.