Related Vulnerabilities: CVE-2016-8885  

A null pointer dereference vulnerability has been discovered in bmp_getdata in bmp_dec.c.

Severity Medium

Remote Yes

Type Denial of service

Description

A null pointer dereference vulnerability has been discovered in bmp_getdata in bmp_dec.c.

AVG-14 jasper 1.900.1-15 1.900.31-1 Critical Fixed

07 Dec 2016 ASA-201612-9 AVG-14 jasper Critical multiple issues

https://github.com/mdadams/jasper/commit/5d66894d2313e3f3469f19066
http://seclists.org/oss-sec/2016/q4/213