Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors.
http://www.securityfocus.com/bid/64109
http://www.debian.org/security/2013/dsa-2808
http://seclists.org/oss-sec/2013/q4/412