OpenJPEG is an open-source JPEG 2000 codec written in C language. It has been developed in order to promote the use of JPEG 2000, a still-image compression standard from the Joint Photographic Experts Group (JPEG). Since April 2015, it is officially recognized by ISO/IEC and ITU-T as a JPEG 2000 Reference Software.
Security Fix(es):
This bug is triggered when we use opjdecompress with the -r option and its argument set to 2. Version v2.5.2 also has this vulnerability. Reproducible: Always Steps to Reproduce: see https://github.com/uclouvain/openjpeg/issues/1563 References: https://github.com/uclouvain/openjpeg/issues/1563 https://github.com/uclouvain/openjpeg/commit/e492644fbded4c820ca55b5e50e598d346e850e8 https://bugzilla.redhat.com/showbug.cgi?id=2333954(CVE-2024-56826)
{ "severity": "Medium" }
{ "aarch64": [ "openjpeg2-2.5.0-5.oe2203sp4.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp4.aarch64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp4.aarch64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp4.aarch64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp4.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.5.0-5.oe2203sp4.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp4.x86_64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp4.x86_64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp4.x86_64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp4.x86_64.rpm" ], "src": [ "openjpeg2-2.5.0-5.oe2203sp4.src.rpm" ], "noarch": [ "openjpeg2-help-2.5.0-5.oe2203sp4.noarch.rpm" ] }
{ "aarch64": [ "openjpeg2-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-devel-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-tools-2.5.0-6.oe2403sp1.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-devel-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-tools-2.5.0-6.oe2403sp1.x86_64.rpm" ], "src": [ "openjpeg2-2.5.0-6.oe2403sp1.src.rpm" ], "noarch": [ "openjpeg2-help-2.5.0-6.oe2403sp1.noarch.rpm" ] }
{ "aarch64": [ "openjpeg2-2.5.0-5.oe2203sp3.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp3.aarch64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp3.aarch64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp3.aarch64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp3.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.5.0-5.oe2203sp3.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp3.x86_64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp3.x86_64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp3.x86_64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp3.x86_64.rpm" ], "src": [ "openjpeg2-2.5.0-5.oe2203sp3.src.rpm" ], "noarch": [ "openjpeg2-help-2.5.0-5.oe2203sp3.noarch.rpm" ] }
{ "aarch64": [ "openjpeg2-2.3.1-14.oe2003sp4.aarch64.rpm", "openjpeg2-debuginfo-2.3.1-14.oe2003sp4.aarch64.rpm", "openjpeg2-debugsource-2.3.1-14.oe2003sp4.aarch64.rpm", "openjpeg2-devel-2.3.1-14.oe2003sp4.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.3.1-14.oe2003sp4.x86_64.rpm", "openjpeg2-debuginfo-2.3.1-14.oe2003sp4.x86_64.rpm", "openjpeg2-debugsource-2.3.1-14.oe2003sp4.x86_64.rpm", "openjpeg2-devel-2.3.1-14.oe2003sp4.x86_64.rpm" ], "src": [ "openjpeg2-2.3.1-14.oe2003sp4.src.rpm" ], "noarch": [ "openjpeg2-help-2.3.1-14.oe2003sp4.noarch.rpm" ] }
{ "aarch64": [ "openjpeg2-2.5.0-5.oe2203sp1.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp1.aarch64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp1.aarch64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp1.aarch64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp1.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.5.0-5.oe2203sp1.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-5.oe2203sp1.x86_64.rpm", "openjpeg2-debugsource-2.5.0-5.oe2203sp1.x86_64.rpm", "openjpeg2-devel-2.5.0-5.oe2203sp1.x86_64.rpm", "openjpeg2-tools-2.5.0-5.oe2203sp1.x86_64.rpm" ], "src": [ "openjpeg2-2.5.0-5.oe2203sp1.src.rpm" ], "noarch": [ "openjpeg2-help-2.5.0-5.oe2203sp1.noarch.rpm" ] }
{ "aarch64": [ "openjpeg2-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-devel-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-tools-2.5.0-6.oe2403sp1.aarch64.rpm", "openjpeg2-2.5.0-6.oe2403.aarch64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403.aarch64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403.aarch64.rpm", "openjpeg2-devel-2.5.0-6.oe2403.aarch64.rpm", "openjpeg2-tools-2.5.0-6.oe2403.aarch64.rpm" ], "x86_64": [ "openjpeg2-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-devel-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-tools-2.5.0-6.oe2403sp1.x86_64.rpm", "openjpeg2-2.5.0-6.oe2403.x86_64.rpm", "openjpeg2-debuginfo-2.5.0-6.oe2403.x86_64.rpm", "openjpeg2-debugsource-2.5.0-6.oe2403.x86_64.rpm", "openjpeg2-devel-2.5.0-6.oe2403.x86_64.rpm", "openjpeg2-tools-2.5.0-6.oe2403.x86_64.rpm" ], "src": [ "openjpeg2-2.5.0-6.oe2403sp1.src.rpm", "openjpeg2-2.5.0-6.oe2403.src.rpm" ], "noarch": [ "openjpeg2-help-2.5.0-6.oe2403sp1.noarch.rpm", "openjpeg2-help-2.5.0-6.oe2403.noarch.rpm" ] }