CVE-2015-1239

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
18/10/2017
Last modified:
20/04/2025

Description

Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:* 2.1.1 (excluding)
cpe:2.3:a:google:pdfium:-:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*