Double free vulnerability in the opj_j2k_copy_default_tcp_and_create_tcd function in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 45.0.2454.85, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by triggering a memory-allocation failure.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published: 2015-09-03T22:00:00

Updated: 2024-08-06T07:22:22.421Z

Reserved: 2015-08-21T00:00:00

Link: CVE-2015-6581

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2015-09-03T22:59:14.657

Modified: 2025-04-12T10:46:40.837

Link: CVE-2015-6581

cve-icon Redhat

Severity : Important

Publid Date: 2015-05-19T00:00:00Z

Links: CVE-2015-6581 - Bugzilla