Related Vulnerabilities: CVE-2014-9029  

Multiple off-by-one flaws, leading to heap-based buffer overflows, were found in the way JasPer decoded JPEG 2000 files. A specially crafted file could cause an application using JasPer to crash or, possibly, execute arbitrary code.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

Multiple off-by-one flaws, leading to heap-based buffer overflows, were found in the way JasPer decoded JPEG 2000 files. A specially crafted file could cause an application using JasPer to crash or, possibly, execute arbitrary code.

AVG-99 jasper 1.900.1-15 1.900.5-1 Critical Fixed