A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior.
{ "vanir_signatures": [ { "id": "CVE-2024-56826-b43f6bae", "digest": { "threshold": 0.9, "line_hashes": [ "28418849628522301618374514485340257261", "65408979627220108443777868020503841173", "319813844001325523217530536602563674936", "146437935206911265118418242331132350205" ] }, "signature_type": "Line", "deprecated": false, "target": { "file": "src/lib/openjp2/j2k.c" }, "signature_version": "v1", "source": "https://github.com/uclouvain/openjpeg/commit/e492644fbded4c820ca55b5e50e598d346e850e8" }, { "id": "CVE-2024-56826-d951482e", "digest": { "length": 1431.0, "function_hash": "293699255173430293670766210826467402271" }, "signature_type": "Function", "deprecated": false, "target": { "file": "src/lib/openjp2/j2k.c", "function": "opj_j2k_add_tlmarker" }, "signature_version": "v1", "source": "https://github.com/uclouvain/openjpeg/commit/e492644fbded4c820ca55b5e50e598d346e850e8" } ] }