Search CVE reports


Toggle filters

11 – 20 of 118 results


CVE-2022-2963

Negligible priority
Needs evaluation

A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release
Show less packages

CVE-2022-22771

Medium priority
Needs evaluation

The Server component of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library for ActiveMatrix BPM, TIBCO JasperReports Server, TIBCO JasperReports Server for AWS Marketplace, TIBCO JasperReports Server...

1 affected package

jasperreports

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Needs evaluation
Show less packages

CVE-2021-3467

Medium priority
Vulnerable

A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the...

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2021-3443

Medium priority
Vulnerable

A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper...

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2021-3272

Low priority
Vulnerable

jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2021-27845

Low priority
Vulnerable

A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2021-26927

Low priority
Vulnerable

A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2021-26926

Low priority
Vulnerable

A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2020-27828

Medium priority
Fixed

There's a flaw in jasper's jpc encoder in versions prior to 2.0.23. Crafted input provided to jasper by an attacker could cause an arbitrary out-of-bounds write. This could potentially affect data confidentiality, integrity, or...

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release
Show less packages

CVE-2018-9252

Negligible priority
Vulnerable

JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages