CVE-2023-39327

Plain English Summary

AI-powered analysis for quick understanding

An attacker can create specially crafted image files that cause the OpenJPEG program to get stuck in a loop, repeatedly printing warning messages and potentially overwhelming the system. This issue occurs when the program processes these malicious images, which could disrupt normal operations if exploited.

Technical Description

A flaw was found in OpenJPEG. Maliciously constructed pictures can cause the program to enter a large loop and continuously print warning messages on the terminal.

CVSS Vector Analysis

Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionRequired
Confidentiality ImpactNone
Integrity ImpactNone
Availability ImpactLow
ScopeUnchanged

Vector String

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

Exploit Resources

Search for proof-of-concept code and exploit modules

Official References

Est. Bounty
$552($500-$1K)
Vendor Response
Grade FPatched in 604 days

Quick Information

Published

Jul 13, 2024

over 1 year ago

Last Modified

Mar 9, 2026

29 days ago

Vendor

uclouvain

Product

openjpeg