Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-56826

Published: January 2, 2025Last modified: July 2, 2025

Description

A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior.

Severity score breakdown

ParameterValue
Base score5.6
Attack VectorLOCAL
Attack complexityLOW
Privileges requiredLOW
User interactionREQUIRED
ScopeUNCHANGED
ConfidentialityLOW
Integrity impactNONE
Availability impactHIGH
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopenjpegVulnerable (2.5.0-r0)
StreamopenjpegVulnerable (2.5.0-r0)

References

ON THIS PAGE