Double free vulnerability in the j2kreadppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.
{ "urgency": "not yet assigned" }