Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities BSI Germany

[UPDATE] [hoch] OpenJPEG: Schwachstelle ermöglicht Codeausführung

A high-severity vulnerability (CVSS 8.4) in the OpenJPEG JPEG 2000 codec library allows a local attacker to execute arbitrary code. The flaw affects OpenJPEG versions up to and including 2.5.3. Major Linux distributions including Ubuntu, Oracle Linux, RHEL, Fedora, and SUSE have released updates containing a mitigation.
Read Full Article →

[WID-SEC-2025-1722] OpenJPEG: Schwachstelle ermöglicht Codeausführung CVSS Base Score 8.4 (hoch) CVSS Temporal Score 7.3 (hoch) Remoteangriff nein Datum 05.08.2025 Stand UPDATE 02.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Produktbeschreibung Die OpenJPEG Bibliothek ist ein in C geschriebener Open Source JPEG 2000 Codec. Produkte UPDATE 18.09.2025 Ubuntu Linux UPDATE 18.08.2025 Oracle Linux UPDATE 17.08.2025 Red Hat Enterprise Linux UPDATE 10.08.2025 Fedora Linux UPDATE 07.08.2025 SUSE openSUSE 05.08.2025 Open Source OpenJPEG <=2.5.3 Angriff Angriff Ein lokaler Angreifer kann eine Schwachstelle in OpenJPEG ausnutzen, um Code auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article