View at Official ubuntu advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2016-3182 high priority: Ubuntu including 2 source packages (openjpeg, openjpeg2), 9 status rows across 6 suites (bionic, precise, trusty, upstream, wily, xenial): DNE 3, not-affected 3, released 2, ignored 1.
The color_esycc_to_rgb function in bin/common/color.c in OpenJPEG before 2.1.1 allows attackers to cause a denial of service (memory corruption) via a crafted jpeg 2000 file.