Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jasper project jasper vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2021-27845
A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c
Jasper Project Jasper
4.3
CVSSv2
CVE-2021-3443
A NULL pointer dereference flaw was found in the way Jasper versions prior to 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
Jasper Project Jasper
Redhat Enterprise Linux 7.0
Redhat Enterprise Linux 6.0
Redhat Enterprise Linux 8.0
Fedoraproject Fedora 33
4.3
CVSSv2
CVE-2021-3467
A NULL pointer dereference flaw was found in the way Jasper versions prior to 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
Jasper Project Jasper
Fedoraproject Fedora 34
4.3
CVSSv2
CVE-2021-26927
A flaw was found in jasper prior to 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
Jasper Project Jasper
Fedoraproject Fedora 32
Fedoraproject Fedora 33
Fedoraproject Fedora 34
4.3
CVSSv2
CVE-2021-3272
jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
Jasper Project Jasper 2.0.24
Fedoraproject Fedora 32
Fedoraproject Fedora 33
4.3
CVSSv2
CVE-2017-14232
The read_chunk function in flif-dec.cpp in Free Lossless Image Format (FLIF) 0.3 allows remote malicious users to cause a denial of service (invalid memory read and application crash) via a crafted flif file.
Flif Flif 0.3
Jasper Project Jasper
4.3
CVSSv2
CVE-2018-20622
JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.
Jasper Project Jasper 2.0.14
Debian Debian Linux 8.0
4.3
CVSSv2
CVE-2018-20584
JasPer 2.0.14 allows remote malicious users to cause a denial of service (application hang) via an attempted conversion to the jp2 format.
Jasper Project Jasper 2.0.14
Debian Debian Linux 8.0
Oracle Outside In Technology 8.5.4
4.3
CVSSv2
CVE-2018-20570
jp2_encode in jp2/jp2_enc.c in JasPer 2.0.14 has a heap-based buffer over-read.
Jasper Project Jasper 2.0.14
Debian Debian Linux 8.0
4.3
CVSSv2
CVE-2018-19539
An issue exists in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a denial of service.
Jasper Project Jasper 2.0.14
Suse Linux Enterprise Server 11
Suse Linux Enterprise Server 12
Suse Linux Enterprise Desktop 12
Debian Debian Linux 8.0
Opensuse Leap 15.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »