CVE-2021-45935

Publication date 1 January 2022

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

5.5 · Medium

Score breakdown

Description

Grok 9.5.0 has a heap-based buffer overflow in openhtj2k::T1OpenHTJ2K::decompress (called from std::__1::__packaged_task_func<std::__1::__bind<grk::T1DecompressScheduler::deco and std::__1::packaged_task<int).

Status

Package Ubuntu Release Status
libgrokj2k 22.04 LTS jammy Not in release
21.10 impish Ignored end of life
21.04 hirsute Ignored end of life
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release

Severity score breakdown

CVSS version: CVSS v3.0

Base score 5.5 · Medium

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H


Access our resources on patching vulnerabilities