Jasper Project

Jasper

102 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.08%
  • Veröffentlicht 23.02.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 05:57:03

A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.

Exploit
  • EPSS 0.11%
  • Veröffentlicht 23.02.2021 18:15:14
  • Zuletzt bearbeitet 21.11.2024 05:57:03

A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.

Exploit
  • EPSS 0.08%
  • Veröffentlicht 27.01.2021 08:15:10
  • Zuletzt bearbeitet 21.11.2024 06:21:11

jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 11.12.2020 04:15:11
  • Zuletzt bearbeitet 21.11.2024 05:21:53

There's a flaw in jasper's jpc encoder in versions prior to 2.0.23. Crafted input provided to jasper by an attacker could cause an arbitrary out-of-bounds write. This could potentially affect data confidentiality, integrity, or application availabili...

Exploit
  • EPSS 0.86%
  • Veröffentlicht 17.02.2020 22:15:11
  • Zuletzt bearbeitet 21.11.2024 02:39:06

Integer overflow in the jas_matrix_create function in JasPer allows context-dependent attackers to have unspecified impact via a crafted JPEG 2000 image, related to integer multiplication for memory allocation.

  • EPSS 0.24%
  • Veröffentlicht 15.08.2019 17:15:11
  • Zuletzt bearbeitet 21.11.2024 03:12:22

The read_chunk function in flif-dec.cpp in Free Lossless Image Format (FLIF) 0.3 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted flif file.

  • EPSS 1.29%
  • Veröffentlicht 31.12.2018 19:29:00
  • Zuletzt bearbeitet 06.05.2025 17:15:49

JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.

Exploit
  • EPSS 0.42%
  • Veröffentlicht 30.12.2018 05:29:01
  • Zuletzt bearbeitet 21.11.2024 04:01:47

JasPer 2.0.14 allows remote attackers to cause a denial of service (application hang) via an attempted conversion to the jp2 format.

Exploit
  • EPSS 0.97%
  • Veröffentlicht 28.12.2018 16:29:05
  • Zuletzt bearbeitet 21.11.2024 04:01:45

jp2_encode in jp2/jp2_enc.c in JasPer 2.0.14 has a heap-based buffer over-read.

Exploit
  • EPSS 0.96%
  • Veröffentlicht 26.11.2018 03:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:07

An issue was discovered in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a denial of service.