CVE-2013-4289: Uclouvain Openjpeg
High severity, CVSS 10.0. EPSS: 2.7% chance of exploitation in the next 30 days.
Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified impact and vectors, which trigger a heap-based buffer overflow.
Affected products
- Uclouvain Openjpeg: up to and including 1.5.1; version 1.3 only; version 1.4 only; version 1.5 only
Published 2014-04-18. Last modified 2026-06-16.