Root has patched CVE-2016-9580 in the rootio-openjpeg2 package for Root:Debian:13. Multiple fixed versions available.
{ "source": "Root", "distro": "debian", "distro_version": "13" }
[ "2.5.3-2.1~deb13u1.root.io.4" ]
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2016-9580.json"
"root.io.4"
1.0
"2.5.3-2.1~deb13u1"
true