CVE-2018-19540
- EPSS 0.68%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29...
CVE-2018-19541
- EPSS 1.18%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29...
CVE-2018-19542
- EPSS 0.97%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function jp2_decode in libjasper/jp2/jp2_dec.c, leading to a denial of service.
CVE-2018-19543
- EPSS 0.34%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.
CVE-2018-19139
- EPSS 0.45%
- Veröffentlicht 09.11.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:57:24
An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.
CVE-2018-18873
- EPSS 0.45%
- Veröffentlicht 31.10.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:47
An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function ras_putdatastd in ras/ras_enc.c.
CVE-2016-9583
- EPSS 0.32%
- Veröffentlicht 01.08.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:01:26
An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.
CVE-2016-8654
- EPSS 0.23%
- Veröffentlicht 01.08.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 02:59:46
A heap-buffer overflow vulnerability was found in QMFB code in JPC codec caused by buffer being allocated with too small size. jasper versions before 2.0.0 are affected.
CVE-2018-9154
- EPSS 0.49%
- Veröffentlicht 04.05.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:05
There is a reachable abort in the function jpc_dec_process_sot in libjasper/jpc/jpc_dec.c of JasPer 2.0.14 that will lead to a remote denial of service attack by triggering an unexpected jas_alloc2 return value, a different vulnerability than CVE-201...
CVE-2018-9252
- EPSS 0.49%
- Veröffentlicht 04.04.2018 02:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:13
JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.