Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does not validate a certain precision value, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted JPEG 2000 image in a PDF document, related to the opj_pi_next_rpcl, opj_pi_next_pcrl, and opj_pi_next_cprl functions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Google Chrome PDFium OpenJPEG 任意代码执行漏洞
Vulnerability Description
Google Chrome是美国谷歌(Google)公司开发的一款Web浏览器。PDFium是其中的一个开源PDF渲染引擎。OpenJPEG是一款基于C语言的开源JPEG 2000编码解码器。 Google Chrome 48.0.2564.109之前版本的PDFium中使用的OpenJPEG中的pi.c文件存在安全漏洞,该漏洞源于程序没有验证特定的精度值。远程攻击者可借助PDF文档中特制的JPEG 2000图像利用该漏洞执行任意代码或造成拒绝服务(越边界读取)。
CVSS Information
N/A
Vulnerability Type
N/A