MEDIUM
openjpeg: multiple denial of service flaws
Published Dec 12, 2013
5.0
MEDIUMCVSS 2.0
EPSS 2.50%
Description
OpenJPEG 1.3 and earlier allows remote attackers to cause a denial of service (memory consumption or crash) via unspecified vectors related to NULL pointer dereferences, division-by-zero, and other errors.
Affected products
No data.
No data.
Red Hat Enterprise Linux 6
openjpeg-0:1.3-10.el6_5
Fixed · RHSA-2013:1850
Red Hat Enterprise Linux 7
openjpeg
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | openjpeg-0:1.3-10.el6_5 | Fixed | RHSA-2013:1850 |
| Red Hat Enterprise Linux 7 | openjpeg | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (9)
- http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS x_refsource_CONFIRM
- http://rhn.redhat.com/errata/RHSA-2013-1850.html vendor-advisoryx_refsource_REDHAT
- http://seclists.org/oss-sec/2013/q4/412 mailing-listx_refsource_MLIST
- http://www.debian.org/security/2013/dsa-2808 vendor-advisoryx_refsource_DEBIAN
- http://www.securityfocus.com/bid/64142 vdb-entryx_refsource_BID
- https://access.redhat.com/security/cve/CVE-2013-1447 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1037945 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2013-1447
- https://www.cve.org/CVERecord?id=CVE-2013-1447
| Link | Providers | Tags |
|---|---|---|
| http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS | x_refsource_CONFIRM | |
| http://rhn.redhat.com/errata/RHSA-2013-1850.html | vendor-advisoryx_refsource_REDHAT | |
| http://seclists.org/oss-sec/2013/q4/412 | mailing-listx_refsource_MLIST | |
| http://www.debian.org/security/2013/dsa-2808 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.securityfocus.com/bid/64142 | vdb-entryx_refsource_BID | |
| https://access.redhat.com/security/cve/CVE-2013-1447 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1037945 | Issue Tracking | |
| https://nvd.nist.gov/vuln/detail/CVE-2013-1447 | ||
| https://www.cve.org/CVERecord?id=CVE-2013-1447 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner debian
Published Dec 12, 2013
Updated Aug 6, 2024
Reserved Jan 26, 2013
Link CVE-2013-1447
CISA Vulnrichment
Updated n/a