CVE-2015-1239

Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.
Configurations

Configuration 1 (hide)

cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:google:pdfium:-:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

History

29 Dec 2023, 18:05

Type Values Removed Values Added
CPE cpe:2.3:a:uclouvain:openjpeg:-:*:*:*:*:*:*:* cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*
References () https://bugs.chromium.org/p/chromium/issues/detail?id=430891 - () https://bugs.chromium.org/p/chromium/issues/detail?id=430891 - Exploit
References () https://bugs.chromium.org/p/chromium/issues/detail?id=457493 - () https://bugs.chromium.org/p/chromium/issues/detail?id=457493 - Exploit
References () https://lists.debian.org/debian-lts-announce/2018/07/msg00025.html - () https://lists.debian.org/debian-lts-announce/2018/07/msg00025.html - Third Party Advisory

07 Nov 2023, 02:24

Type Values Removed Values Added
References (CONFIRM) https://bugs.chromium.org/p/chromium/issues/detail?id=430891 - Issue Tracking, Third Party Advisory () https://bugs.chromium.org/p/chromium/issues/detail?id=430891 -
References (MLIST) https://lists.debian.org/debian-lts-announce/2018/07/msg00025.html - Mailing List, Third Party Advisory () https://lists.debian.org/debian-lts-announce/2018/07/msg00025.html -
References (CONFIRM) https://bugs.chromium.org/p/chromium/issues/detail?id=457493 - Issue Tracking, Patch, Third Party Advisory () https://bugs.chromium.org/p/chromium/issues/detail?id=457493 -

Information

Published : 2017-10-18 17:29

Updated : 2024-02-28 16:04


NVD link : CVE-2015-1239

Mitre link : CVE-2015-1239

CVE.ORG link : CVE-2015-1239


JSON object : View

Products Affected

google

  • pdfium
  • chrome

debian

  • debian_linux

uclouvain

  • openjpeg
CWE
CWE-415

Double Free