Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-9600

Опубликовано: 29 дек. 2016
Источник: redhat
CVSS3: 4.7
CVSS2: 2.6
EPSS Низкий

Описание

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5netpbmNot affected
Red Hat Enterprise Virtualization 3mingw-virt-viewerWill not fix
Red Hat Enterprise Linux 6jasperFixedRHSA-2017:120809.05.2017
Red Hat Enterprise Linux 7jasperFixedRHSA-2017:120809.05.2017

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1410026jasper: JP2 encoder NULL pointer dereference due to uninitialized cmprof_

EPSS

Процентиль: 71%
0.01488
Низкий

4.7 Medium

CVSS3

2.6 Low

CVSS2

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
nvd
больше 8 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
debian
больше 8 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereferen ...

CVSS3: 6.5
github
около 4 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

suse-cvrf
больше 9 лет назад

Security update for jasper

EPSS

Процентиль: 71%
0.01488
Низкий

4.7 Medium

CVSS3

2.6 Low

CVSS2