SynopsisThe remote Amazon Linux AMI host is missing a security update.
DescriptionMultiple integer overflow flaws, leading to heap-based buffer overflows, were found in OpenJPEG. A specially crafted JPEG2000 image could cause an application using OpenJPEG to crash or, potentially, execute arbitrary code. (CVE-2016-5139 , CVE-2016-5158 , CVE-2016-5159 , CVE-2016-7163)
A vulnerability was found in the patch for CVE-2013-6045 for OpenJPEG.
A specially crafted JPEG2000 image, when read by an application using OpenJPEG, could cause heap-based buffer overflows leading to a crash or, potentially, arbitrary code execution. (CVE-2016-9675)
SolutionRun 'yum update openjpeg' to update your system.