Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-9600

Опубликовано: 29 дек. 2016
Источник: redhat
CVSS3: 4.7
CVSS2: 2.6

Описание

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5netpbmNot affected
Red Hat Enterprise Virtualization 3mingw-virt-viewerWill not fix
Red Hat Enterprise Linux 6jasperFixedRHSA-2017:120809.05.2017
Red Hat Enterprise Linux 7jasperFixedRHSA-2017:120809.05.2017

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1410026jasper: JP2 encoder NULL pointer dereference due to uninitialized cmprof_

4.7 Medium

CVSS3

2.6 Low

CVSS2

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
nvd
больше 7 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

CVSS3: 6.5
debian
больше 7 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereferen ...

CVSS3: 6.5
github
больше 3 лет назад

JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.

suse-cvrf
больше 8 лет назад

Security update for jasper

4.7 Medium

CVSS3

2.6 Low

CVSS2