MGASA-2014-0005

Source
https://advisories.mageia.org/MGASA-2014-0005.html
Import Source
https://advisories.mageia.org/MGASA-2014-0005.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0005
Upstream
  • CVE-2013-1447
  • CVE-2013-6045
  • CVE-2013-6052
  • CVE-2013-6053
  • CVE-2013-6887
Published
2014-01-06T01:10:03Z
Modified
2026-04-16T06:23:11.369240047Z
Summary
Updated openjpeg package fixes security vulnerabilities
Details

Multiple heap-based buffer overflow flaws were found in OpenJPEG. An attacker could create a specially crafted OpenJPEG image that, when opened, could cause an application using openjpeg to crash or, possibly, execute arbitrary code with the privileges of the user running the application (CVE-2013-6045).

Multiple denial of service flaws were found in OpenJPEG. An attacker could create a specially crafted OpenJPEG image that, when opened, could cause an application using openjpeg to crash (CVE-2013-1447, CVE-2013-6052, CVE-2013-6053, CVE-2013-6887).

References
Credits

Affected packages

Mageia:3 / openjpeg

Package

Name
openjpeg
Purl
pkg:rpm/mageia/openjpeg?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.1-3.1.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0005.json"