MGASA-2014-0182

Source
https://advisories.mageia.org/MGASA-2014-0182.html
Import Source
https://advisories.mageia.org/MGASA-2014-0182.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0182
Upstream
  • CVE-2014-0158
Published
2014-04-17T20:33:54Z
Modified
2026-04-16T06:23:01.414738725Z
Summary
Updated openjpeg packages fix security vulnerability
Details

Updated openjpeg packages fix security vulnerability:

A heap-based buffer overflow was found in the way openjpeg parsed certain image files from a JPEG2000 image. If a specially-crafted image were opened by an application linked against OpenJPEG, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application (CVE-2014-0158).

References
Credits

Affected packages

Mageia:3 / openjpeg

Package

Name
openjpeg
Purl
pkg:rpm/mageia/openjpeg?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.1-3.2.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0182.json"

Mageia:4 / openjpeg

Package

Name
openjpeg
Purl
pkg:rpm/mageia/openjpeg?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.1-4.1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0182.json"