CVE-2024-56826: Red Hat Enterprise Linux 10

Medium severity, CVSS 5.6. EPSS: 0.3% chance of exploitation in the next 30 days.

A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior.

Affected products

  • Red Hat Red Hat Enterprise Linux 10
  • Red Hat Red Hat Enterprise Linux 6
  • Red Hat Red Hat Enterprise Linux 7
  • Red Hat Red Hat Enterprise Linux 8
  • Red Hat Red Hat Enterprise Linux 9: before 0:2.4.0-8.el9 (fixed in 0:2.4.0-8.el9)

Published 2025-01-09. Last modified 2026-06-17.