Jasper Project

Jasper

102 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.68%
  • Veröffentlicht 26.11.2018 03:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:07

An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29...

Exploit
  • EPSS 1.18%
  • Veröffentlicht 26.11.2018 03:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:07

An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29...

Exploit
  • EPSS 0.97%
  • Veröffentlicht 26.11.2018 03:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:07

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function jp2_decode in libjasper/jp2/jp2_dec.c, leading to a denial of service.

Exploit
  • EPSS 0.34%
  • Veröffentlicht 26.11.2018 03:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:07

An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.

Exploit
  • EPSS 0.45%
  • Veröffentlicht 09.11.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:57:24

An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.

Exploit
  • EPSS 0.45%
  • Veröffentlicht 31.10.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:56:47

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function ras_putdatastd in ras/ras_enc.c.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 01.08.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:01:26

An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.

Exploit
  • EPSS 0.23%
  • Veröffentlicht 01.08.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 02:59:46

A heap-buffer overflow vulnerability was found in QMFB code in JPC codec caused by buffer being allocated with too small size. jasper versions before 2.0.0 are affected.

Exploit
  • EPSS 0.49%
  • Veröffentlicht 04.05.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:05

There is a reachable abort in the function jpc_dec_process_sot in libjasper/jpc/jpc_dec.c of JasPer 2.0.14 that will lead to a remote denial of service attack by triggering an unexpected jas_alloc2 return value, a different vulnerability than CVE-201...

Exploit
  • EPSS 0.49%
  • Veröffentlicht 04.04.2018 02:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:13

JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.