Show filters
98 Total Results
Displaying 21-30 of 98
Sort by:
Attacker Value
Unknown

CVE-2018-19139

Disclosure Date: November 09, 2018 (last updated November 27, 2024)
An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.
0
Attacker Value
Unknown

CVE-2018-18873

Disclosure Date: October 31, 2018 (last updated November 27, 2024)
An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function ras_putdatastd in ras/ras_enc.c.
Attacker Value
Unknown

CVE-2016-9583

Disclosure Date: August 01, 2018 (last updated November 08, 2023)
An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.
0
Attacker Value
Unknown

CVE-2016-8654

Disclosure Date: August 01, 2018 (last updated November 08, 2023)
A heap-buffer overflow vulnerability was found in QMFB code in JPC codec caused by buffer being allocated with too small size. jasper versions before 2.0.0 are affected.
0
Attacker Value
Unknown

CVE-2018-9154

Disclosure Date: May 04, 2018 (last updated November 26, 2024)
There is a reachable abort in the function jpc_dec_process_sot in libjasper/jpc/jpc_dec.c of JasPer 2.0.14 that will lead to a remote denial of service attack by triggering an unexpected jas_alloc2 return value, a different vulnerability than CVE-2017-13745.
0
Attacker Value
Unknown

CVE-2018-9252

Disclosure Date: April 04, 2018 (last updated November 26, 2024)
JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.
0
Attacker Value
Unknown

CVE-2018-9055

Disclosure Date: March 27, 2018 (last updated November 26, 2024)
JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_firstone in libjasper/jpc/jpc_math.c.
0
Attacker Value
Unknown

CVE-2016-9600

Disclosure Date: March 12, 2018 (last updated November 26, 2024)
JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.
0
Attacker Value
Unknown

CVE-2016-9591

Disclosure Date: March 09, 2018 (last updated November 26, 2024)
JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the application using JasPer.
0
Attacker Value
Unknown

CVE-2017-14229

Disclosure Date: September 09, 2017 (last updated November 26, 2024)
There is an infinite loop in the jpc_dec_tileinit function in jpc/jpc_dec.c of Jasper 2.0.13. It will lead to a remote denial of service attack.
0