Related Vulnerabilities: CVE-2017-5505  

An invalid memory read in jas_matrix_asl (jas_seq.c) has been discovered that is triggered by a specially crafted file and is leading to denial of service.

Severity Medium

Remote Yes

Type Denial of service

Description

An invalid memory read in jas_matrix_asl (jas_seq.c) has been discovered that is triggered by a specially crafted file and is leading to denial of service.

AVG-206 jasper 2.0.13-2 2.0.14-1 High Fixed

https://github.com/mdadams/jasper/issues/88
https://blogs.gentoo.org/ago/2017/01/16/jasper-invalid-memory-read-in-jas_matrix_asl-jas_seq-c/