Related Vulnerabilities: CVE-2014-8157  

An off-by-one flaw, leading to a heap-based buffer overflow, was found in the way JasPer decoded JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash or, possibly, execute arbitrary code.

Severity High

Remote Yes

Type Arbitrary code execution

Description

An off-by-one flaw, leading to a heap-based buffer overflow, was found in the way JasPer decoded JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash or, possibly, execute arbitrary code.

AVG-99 jasper 1.900.1-15 1.900.5-1 Critical Fixed