Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in lib/openjp3d/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash).
References
Link | Resource |
---|---|
https://github.com/uclouvain/openjpeg/issues/1123 | Exploit Patch Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2018/12/msg00013.html | Issue Tracking Third Party Advisory |
https://usn.ubuntu.com/4109-1/ | |
https://www.debian.org/security/2019/dsa-4405 | Third Party Advisory |
https://github.com/uclouvain/openjpeg/issues/1123 | Exploit Patch Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2018/12/msg00013.html | Issue Tracking Third Party Advisory |
https://usn.ubuntu.com/4109-1/ | |
https://www.debian.org/security/2019/dsa-4405 | Third Party Advisory |
Configurations
History
21 Nov 2024, 03:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/uclouvain/openjpeg/issues/1123 - Exploit, Patch, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2018/12/msg00013.html - Issue Tracking, Third Party Advisory | |
References | () https://usn.ubuntu.com/4109-1/ - | |
References | () https://www.debian.org/security/2019/dsa-4405 - Third Party Advisory |
Information
Published : 2018-07-19 19:29
Updated : 2024-11-21 03:49
NVD link : CVE-2018-14423
Mitre link : CVE-2018-14423
CVE.ORG link : CVE-2018-14423
JSON object : View
Products Affected
debian
- debian_linux
uclouvain
- openjpeg
CWE
CWE-369
Divide By Zero