Related Vulnerabilities: CVE-2014-8138  

Heap-based buffer overflow in the jp2_decode function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 file.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

Heap-based buffer overflow in the jp2_decode function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 file.

AVG-99 jasper 1.900.1-15 1.900.5-1 Critical Fixed