Description
A heap-buffer overflow was found in the way openjpeg2 handled certain PNG
format files. An attacker could use this flaw to cause an application crash
or in some cases execute arbitrary code with the permission of the user
running such an application.
Notes
mdeslaur | check bug to see if there are more commits before fixing |
Package
Upstream: | needs-triage
|
Ubuntu 18.04 LTS: | released
(9.26~dfsg+0-0ubuntu0.18.04.14)
|
Ubuntu 20.04 LTS: | not-affected
(uses system openjpeg2)
|
Ubuntu 21.10: | not-affected
(uses system openjpeg2)
|
Ubuntu 16.04 ESM: | released
(9.26~dfsg+0-0ubuntu0.16.04.14)
|
Ubuntu 22.04 LTS: | not-affected
(uses system openjpeg2)
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needs-triage
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | needs-triage
|
Patches:
Updated: 2022-04-25 00:49:24 UTC (commit ecc1009cb19540b950de59270950018900f37f15)