VULNERABILITY INTELLIGENCE
CVE-2016-5157
CVSS score8.8 HIGH
EPSS probability4.70%
CISA KEVNot currently listed
Published2016-09-11
Last modified2026-06-17
Description
Heap-based buffer overflow in the opj_dwt_interleave_v function in dwt.c in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allows remote attackers to execute arbitrary code via crafted coordinate values in JPEG 2000 data.