CVE-2016-1924: Uclouvain Openjpeg

Medium severity, CVSS 6.5. EPSS: 3.4% chance of exploitation in the next 30 days.

The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.

Affected products

  • Uclouvain Openjpeg: up to and including 2.1.0

Published 2016-01-27. Last modified 2026-06-17.