VYPR
High severity7.8NVD Advisory· Published Dec 22, 2016· Updated May 6, 2026

CVE-2016-9675

CVE-2016-9675

Description

openjpeg: A heap-based buffer overflow flaw was found in the patch for CVE-2013-6045. A crafted j2k image could cause the application to crash, or potentially execute arbitrary code.

Affected products

11
  • cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*
    Range: <1.5.2
  • cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.3:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.4:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.5:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.6:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:7.7:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:6.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:6.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_for_scientific_computing:6.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.