Vulnerability Name:

CVE-2018-6616 (CCN-138643)

Assigned:2018-02-04
Published:2018-02-04
Updated:2021-02-03
Summary:In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.
CVSS v3 Severity:5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
4.9 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
5.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
4.9 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
3.3 Low (REDHAT CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L)
2.9 Low (REDHAT Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
4.6 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-400
CWE-20
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2018-6616

Source: XF
Type: UNKNOWN
openjpeg-cve20186616-dos(138643)

Source: CCN
Type: OpenJPEG GIT Repository
Excessive Iteration in opj_t1_encode_cblks (src/lib/openjp2/t1.c) #1059

Source: MISC
Type: Exploit, Third Party Advisory
https://github.com/uclouvain/openjpeg/issues/1059

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20181222 [SECURITY] [DLA 1614-1] openjpeg2 security update

Source: UBUNTU
Type: Third Party Advisory
USN-4109-1

Source: DEBIAN
Type: Third Party Advisory
DSA-4405

Source: MISC
Type: Third Party Advisory
https://www.oracle.com/security-alerts/cpujul2020.html

Vulnerable Configuration:Configuration 1:
  • cpe:/a:uclouvain:openjpeg:2.3.0:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:debian:debian_linux:9.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:8.0:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

  • Configuration 4:
  • cpe:/a:oracle:georaster:18c:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/a:redhat:enterprise_linux:8:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/a:redhat:enterprise_linux:8::appstream:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/a:redhat:enterprise_linux:8::crb:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:7:*:*:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:7::client:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:7::computenode:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:7::server:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:7::workstation:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:uclouvain:openjpeg:2.3.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20186616
    V
    CVE-2018-6616
    2023-06-22
    oval:org.opensuse.security:def:7629
    P
    libopenjp2-7-2.3.0-150000.3.8.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7505
    P
    ghostscript-9.52-150000.164.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:659
    P
    Security update for net-snmp (Moderate) (in QA)
    2022-10-07
    oval:org.opensuse.security:def:3044
    P
    cups-filters-1.0.58-19.5.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3498
    P
    ghostscript-9.27-23.28.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3078
    P
    ghostscript-9.27-23.28.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:94560
    P
    ghostscript-9.52-161.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94674
    P
    libopenjp2-7-2.3.0-150000.3.5.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:2930
    P
    ghostscript-9.52-161.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:64
    P
    ghostscript-9.52-3.32.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:993
    P
    Security update for helm-mirror (Moderate)
    2022-05-31
    oval:org.opensuse.security:def:118682
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:119369
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:856
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:118872
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:101587
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:119554
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:1507
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:119062
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:102087
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:119179
    P
    Security update for openjpeg2 (Important)
    2022-04-19
    oval:org.opensuse.security:def:100428
    P
    (Important)
    2022-03-07
    oval:org.opensuse.security:def:112288
    P
    ghostscript-9.54.0-2.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:112737
    P
    libopenjp2-7-2.4.0-1.4 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:8694
    P
    Security update for p11-kit (Important)
    2021-12-22
    oval:org.opensuse.security:def:6723
    P
    Security update for the Linux Kernel (Live Patch 25 for SLE 15) (Important)
    2021-12-14
    oval:org.opensuse.security:def:10379
    P
    Security update for glib-networking (Important)
    2021-12-10
    oval:org.opensuse.security:def:10364
    P
    Security update for java-11-openjdk (Important)
    2021-11-16
    oval:org.opensuse.security:def:69751
    P
    Security update for binutils (Moderate)
    2021-11-09
    oval:org.opensuse.security:def:6710
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15) (Important)
    2021-10-13
    oval:org.opensuse.security:def:8661
    P
    Security update for glibc (Moderate)
    2021-10-12
    oval:org.opensuse.security:def:105812
    P
    ghostscript-9.54.0-2.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:106209
    P
    libopenjp2-7-2.4.0-1.4 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:6478
    P
    Security update for openssl-1_0_0 (Important)
    2021-08-24
    oval:org.opensuse.security:def:8636
    P
    Security update for nodejs8 (Important)
    2021-08-20
    oval:org.opensuse.security:def:9385
    P
    Security update for djvulibre (Important)
    2021-08-20
    oval:org.opensuse.security:def:10317
    P
    Security update for libsndfile (Critical)
    2021-08-17
    oval:org.opensuse.security:def:6701
    P
    Security update for the Linux Kernel (Live Patch 20 for SLE 15) (Important)
    2021-08-17
    oval:org.opensuse.security:def:14897
    P
    ghostscript-9.27-23.28.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48017
    P
    ghostscript-9.27-23.28.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:100840
    P
    ghostscript-9.52-3.32.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62082
    P
    ghostscript-9.52-3.32.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:71823
    P
    ghostscript-9.52-3.32.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:6692
    P
    Security update for the Linux Kernel (Live Patch 22 for SLE 15) (Important)
    2021-07-27
    oval:org.opensuse.security:def:9363
    P
    Security update for sqlite3 (Important)
    2021-07-14
    oval:org.opensuse.security:def:10271
    P
    Security update for pam_radius (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:11222
    P
    Security update for mpv (Important)
    2021-05-27
    oval:org.opensuse.security:def:69646
    P
    Security update for shim (Important)
    2021-05-11
    oval:org.opensuse.security:def:10249
    P
    Security update for ceph (Important)
    2021-05-04
    oval:org.opensuse.security:def:10241
    P
    Security update for qemu (Important)
    2021-04-16
    oval:org.opensuse.security:def:8561
    P
    Security update for clamav (Important)
    2021-04-14
    oval:org.opensuse.security:def:6659
    P
    Security update for the Linux Kernel (Live Patch 20 for SLE 15) (Important)
    2021-04-07
    oval:org.opensuse.security:def:8725
    P
    Security update for tomcat (Important)
    2021-03-30
    oval:org.opensuse.security:def:8712
    P
    Security update for python-cryptography (Important)
    2021-03-03
    oval:org.opensuse.security:def:10398
    P
    Security update for glibc (Important)
    2021-02-26
    oval:org.opensuse.security:def:8703
    P
    Security update for webkit2gtk3 (Important)
    2021-02-24
    oval:org.opensuse.security:def:38151
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:11200
    P
    Security update for cobbler (Moderate)
    2021-01-14
    oval:org.opensuse.security:def:12891
    P
    ghostscript-9.27-23.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71489
    P
    ghostscript-9.52-3.27.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:3900
    P
    ghostscript-devel-9.27-23.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:93715
    P
    ghostscript-9.52-3.27.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16736
    P
    ghostscript-devel-9.27-23.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107094
    P
    ghostscript-9.52-3.27.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116652
    P
    ghostscript-9.52-3.27.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49046
    P
    libzzip-0-13-0.13.67-10.14.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61748
    P
    ghostscript-9.52-3.27.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:8527
    P
    Security update for python3 (Important)
    2020-12-02
    oval:org.opensuse.security:def:36750
    P
    shim on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6410
    P
    libopenssl-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7383
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36886
    P
    libXtst6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6432
    P
    libsndfile1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49100
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66303
    P
    Security update for libEMF (Important)
    2020-12-01
    oval:org.opensuse.security:def:36987
    P
    patch on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:72968
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:8412
    P
    libltdl7 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10473
    P
    libXrandr-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37044
    P
    wireshark on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6525
    P
    vorbis-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8434
    P
    libproxy1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10540
    P
    libserf-1-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36654
    P
    libevent-2_0-5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10498
    P
    libgnomesu-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66395
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37134
    P
    gpgme on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6540
    P
    xorg-x11-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7361
    P
    dpdk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8480
    P
    openvpn on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10549
    P
    libsvn_auth_gnome_keyring-1-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37402
    P
    cpp48 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6402
    P
    libmodplug1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37294
    P
    pam_krb5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6559
    P
    avahi on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10562
    P
    libwmf-0_2-7 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37441
    P
    git-core on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36655
    P
    libexif12 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37353
    P
    wireshark on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6634
    P
    gzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73086
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8542
    P
    vsftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37469
    P
    jakarta-taglibs-standard on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36666
    P
    libjbig2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8404
    P
    libjavascriptcoregtk-4_0-18 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38193
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37513
    P
    libcgroup-tools on GA media (Moderate)
    2020-12-01
    oval:com.redhat.rhba:def:20193408
    P
    RHBA-2019:3408: openjpeg2 bug fix and enhancement update (Low)
    2019-11-05
    oval:com.redhat.rhea:def:20192270
    P
    RHEA-2019:2270: openjpeg2 bug fix and enhancement update (Low)
    2019-08-06
    oval:com.ubuntu.disco:def:201866160000000
    V
    CVE-2018-6616 on Ubuntu 19.04 (disco) - medium.
    2018-02-04
    oval:com.ubuntu.artful:def:20186616000
    V
    CVE-2018-6616 on Ubuntu 17.10 (artful) - untriaged.
    2018-02-04
    oval:com.ubuntu.cosmic:def:201866160000000
    V
    CVE-2018-6616 on Ubuntu 18.10 (cosmic) - untriaged.
    2018-02-04
    oval:com.ubuntu.bionic:def:20186616000
    V
    CVE-2018-6616 on Ubuntu 18.04 LTS (bionic) - untriaged.
    2018-02-04
    oval:com.ubuntu.bionic:def:201866160000000
    V
    CVE-2018-6616 on Ubuntu 18.04 LTS (bionic) - medium.
    2018-02-04
    oval:com.ubuntu.cosmic:def:20186616000
    V
    CVE-2018-6616 on Ubuntu 18.10 (cosmic) - untriaged.
    2018-02-04
    oval:com.ubuntu.xenial:def:201866160000000
    V
    CVE-2018-6616 on Ubuntu 16.04 LTS (xenial) - medium.
    2018-02-04
    oval:com.ubuntu.xenial:def:20186616000
    V
    CVE-2018-6616 on Ubuntu 16.04 LTS (xenial) - untriaged.
    2018-02-04
    BACK
    uclouvain openjpeg 2.3.0
    debian debian linux 9.0
    debian debian linux 8.0
    canonical ubuntu linux 18.04
    oracle georaster 18c
    openjpeg openjpeg 2.3.0