CVE-2015-1273 PUBLISHED

Heap-based buffer overflow in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 44.0.2403.89, allows remote attackers to cause a denial of service or possibly have unspecified other impact via invalid JPEG2000 data in a PDF document.

EPSS 2.69% · 85.7th percentile

Risk Scores

EPSS Score
2.69%
85.7th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSopenjpeg0, 1.3+dfsg-4.6ubuntu2, 1.3+dfsg-4.7ubuntu1
Ubuntu:14.04:LTSchromium-browser32.0.1700.107-0ubuntu1~20140204.977.1, 33.0.1750.152-0ubuntu1~pkg995.1, 34.0.1847.116-0ubuntu2
Ubuntu:Pro:16.04:LTSopenjpeg0, 1:1.5.2-3.1, 1:1.5.2-3.1ubuntu0.1~esm2

Timeline

References

Open in Interactive Console →