Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-13748

Опубликовано: 29 авг. 2017
Источник: debian
EPSS Низкий

Описание

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jas_strdup() in base/jas_string.c, that will lead to a remote denial of service attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jasperremovedpackage
jasperignoredwheezypackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1485287

  • https://github.com/mdadams/jasper/issues/168

  • Fixed by: https://github.com/mdadams/jasper/pull/159 but still no upstream comment.

EPSS

Процентиль: 91%
0.04676
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jas_strdup() in base/jas_string.c, that will lead to a remote denial of service attack.

CVSS3: 3.3
redhat
почти 9 лет назад

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jas_strdup() in base/jas_string.c, that will lead to a remote denial of service attack.

CVSS3: 7.5
nvd
почти 9 лет назад

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jas_strdup() in base/jas_string.c, that will lead to a remote denial of service attack.

CVSS3: 7.5
github
больше 4 лет назад

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jas_strdup() in base/jas_string.c, that will lead to a remote denial of service attack.

EPSS

Процентиль: 91%
0.04676
Низкий