CVE-2017-2811: Kakadusoftware Kakadu SDK
High severity, CVSS 7.8. EPSS: 1.5% chance of exploitation in the next 30 days.
A code execution vulnerability exists in the Kakadu SDK 7.9's parsing of compressed JPEG 2000 images. A specially crafted JPEG 2000 file can be read by the program, and can lead to an out of bounds write causing an exploitable condition to arise.
Affected products
- Kakadusoftware Kakadu SDK: version 7.9 only
Published 2018-04-24. Last modified 2026-06-17.