Search CVE reports


Toggle filters

61 – 70 of 118 results


CVE-2017-13747

Low priority
Not affected

There is a reachable assertion abort in the function jpc_floorlog2() in jpc/jpc_math.c in JasPer 2.0.12 that will lead to a remote denial of service attack.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release
Show less packages

CVE-2017-13746

Low priority
Not affected

There is a reachable assertion abort in the function jpc_dec_process_siz() in jpc/jpc_dec.c:1297 in JasPer 2.0.12 that will lead to a remote denial of service attack.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release
Show less packages

CVE-2017-13745

Negligible priority
Vulnerable

There is a reachable assertion abort in the function jpc_dec_process_sot() in jpc/jpc_dec.c in JasPer 2.0.12 that will lead to a remote denial of service attack by triggering an unexpected jpc_ppmstabtostreams return value, a...

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages

CVE-2017-1000050

Low priority

Some fixes available 2 of 3

JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to check to see if the image contained at least one component resulting in a denial-of-service.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release
Show less packages

CVE-2016-9600

Low priority

Some fixes available 2 of 4

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release
Show less packages

CVE-2016-9591

Medium priority

Some fixes available 3 of 4

JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the application using JasPer.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper
Show less packages

CVE-2016-9583

Medium priority
Not affected

An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper
Show less packages

CVE-2016-9560

Medium priority

Some fixes available 3 of 4

Stack-based buffer overflow in the jpc_tsfb_getbands2 function in jpc_tsfb.c in JasPer before 1.900.30 allows remote attackers to have unspecified impact via a crafted image.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper
Show less packages

CVE-2016-9557

Low priority
Ignored

Integer overflow in jas_image.c in JasPer before 1.900.25 allows remote attackers to cause a denial of service (application crash) via a crafted file.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release
Show less packages

CVE-2016-9399

Negligible priority
Vulnerable

The calcstepsizes function in jpc_dec.c in JasPer 1.900.22 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

1 affected package

jasper

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release
Show less packages