Candidate: CVE-2016-9581 PublicDate: 2018-08-01 14:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9581 https://github.com/uclouvain/openjpeg/issues/872 http://www.openwall.com/lists/oss-security/2016/12/09/4 Description: An infinite loop vulnerability in tiftoimage that results in heap buffer overflow in convert_32s_C1P1 was found in openjpeg 2.1.2. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_openjpeg2: upstream_openjpeg2: needs-triage precise_openjpeg2: DNE precise/esm_openjpeg2: DNE trusty_openjpeg2: DNE trusty/esm_openjpeg2: DNE vivid/stable-phone-overlay_openjpeg2: DNE vivid/ubuntu-core_openjpeg2: DNE xenial_openjpeg2: not-affected (code not present) yakkety_openjpeg2: ignored (reached end-of-life) zesty_openjpeg2: ignored (reached end-of-life) artful_openjpeg2: ignored (reached end-of-life) bionic_openjpeg2: not-affected (2.2.0-2) cosmic_openjpeg2: not-affected (2.2.0-2) disco_openjpeg2: not-affected (2.2.0-2) devel_openjpeg2: not-affected (2.2.0-2)