Summary
This host is installed with OpenJPEG and is prone to record parsing vulnerability.
Impact
Successful exploitation will allow remote attackers to execute arbitrary code.
Impact Level: System/Application
Solution
Upgrade to the OpenJPEG version 1.5 or later,
For updates refer to http://code.google.com/p/openjpeg/downloads/list
Insight
The flaw is due to an error when parsing a CMAP record and can be exploited to cause an out of bounds write via specially crafted JPEG files.
Affected
OpenJPEG version prior to 1.5
References
Updated on 2017-03-28
Severity
Classification
-
CVE CVE-2012-1499 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities