CVE-2020-27814 - log back

CVE-2020-27814 edited at 29 Dec 2020 11:17:57
Description
- A heap-buffer overwrites error was discovered in lib/openjp2/mqc.c in OpenJPEG 2.3.1. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.
+ A heap-buffer overwrite error was discovered in lib/openjp2/mqc.c in OpenJPEG before version 2.4.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.
CVE-2020-27814 edited at 10 Dec 2020 13:29:52
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary code execution
Description
+ A heap-buffer overwrites error was discovered in lib/openjp2/mqc.c in OpenJPEG 2.3.1. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.
References
+ https://github.com/uclouvain/openjpeg/issues/1283
+ https://github.com/uclouvain/openjpeg/pull/1303
+ https://github.com/uclouvain/openjpeg/commit/4ce7d285a55d29b79880d0566d4b010fe1907aa9
CVE-2020-27814 created at 10 Dec 2020 13:28:25
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes