Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in lib/openjp3d/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash).
References
Link | Resource |
---|---|
https://github.com/uclouvain/openjpeg/issues/1123 | Exploit Patch Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2018/12/msg00013.html | Issue Tracking Third Party Advisory |
https://www.debian.org/security/2019/dsa-4405 | Third Party Advisory |
https://usn.ubuntu.com/4109-1/ |
Information
Published : 2018-07-19 12:29
Updated : 2020-09-09 12:57
NVD link : CVE-2018-14423
Mitre link : CVE-2018-14423
JSON object : View
CWE
CWE-369
Divide By Zero
Products Affected
debian
- debian_linux
uclouvain
- openjpeg