vulnerability
Amazon Linux AMI 2: CVE-2020-27814: Security patch for openjpeg2 (ALAS-2022-1741)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Jan 26, 2021 | Jul 4, 2022 | Nov 26, 2024 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Jan 26, 2021
Added
Jul 4, 2022
Modified
Nov 26, 2024
Description
A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash or in some cases execute arbitrary code with the permission of the user running such an application.
Solution(s)
amazon-linux-ami-2-upgrade-openjpeg2amazon-linux-ami-2-upgrade-openjpeg2-debuginfoamazon-linux-ami-2-upgrade-openjpeg2-develamazon-linux-ami-2-upgrade-openjpeg2-devel-docsamazon-linux-ami-2-upgrade-openjpeg2-tools

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.