Back

MEDIUM

openjpeg: Heap memory corruption leading to invalid free by processing certain Gray16 TIFF images

Published Jul 18, 2012

Description

The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an "invalid free."

Affected products

Remediation

No remediation recorded yet.

Metrics

References (16)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jul 18, 2012
Updated Aug 7, 2024
Reserved Dec 9, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Jul 31, 2009