Unrated severityNVD Advisory· Published Jul 18, 2012· Updated Apr 29, 2026
CVE-2009-5030
CVE-2009-5030
Description
The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an "invalid free."
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- code.google.com/p/openjpeg/source/detailnvdPatch
- secunia.com/advisories/48781nvdVendor Advisory
- secunia.com/advisories/49913nvdVendor Advisory
- code.google.com/p/openjpeg/issues/detailnvd
- lists.fedoraproject.org/pipermail/package-announce/2012-June/082923.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2012-June/083105.htmlnvd
- rhn.redhat.com/errata/RHSA-2012-1068.htmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2012/04/13/5nvd
- www.securityfocus.com/bid/53012nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/74851nvd
- groups.google.com/forum/nvd
News mentions
0No linked articles in our index yet.