Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9600

Опубликовано: 12 мар. 2018
Источник: debian
EPSS Низкий

Описание

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jasperremovedpackage

Примечания

  • https://github.com/mdadams/jasper/issues/109

  • Fixed by: https://github.com/mdadams/jasper/commit/a632c6b54bd4ffc3bebab420e00b7e7688aa3846

  • Not suitable for code injection, hardly denial of service

EPSS

Процентиль: 52%
0.00295
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 4.7
redhat
почти 9 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
nvd
больше 7 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
github
больше 3 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

suse-cvrf
больше 8 лет назад

Security update for jasper

EPSS

Процентиль: 52%
0.00295
Низкий