In OpenJPEG 2.3.0, a stack-based buffer overflow was discovered in the pgxtoimage function in jpwl/convert.c. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.
{
"source": "CPE_FIELD",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "2.3.0"
}
],
"cpe": "cpe:2.3:a:uclouvain:openjpeg:2.3.0:*:*:*:*:*:*:*"
}