CVE-2009-5030

The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an "invalid free."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*
cpe:2.3:a:uclouvain:openjpeg:1.4:*:*:*:*:*:*:*
cpe:2.3:a:uclouvain:openjpeg:1.5:*:*:*:*:*:*:*

History

No history.

Information

Published : 2012-07-18 22:55

Updated : 2024-02-04 18:16


NVD link : CVE-2009-5030

Mitre link : CVE-2009-5030

CVE.ORG link : CVE-2009-5030


JSON object : View

Products Affected

uclouvain

  • openjpeg
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer