rpm package
opensuse/jasper&distro=openSUSE Leap 15.4
pkg:rpm/opensuse/jasper&distro=openSUSE%20Leap%2015.4
Vulnerabilities (5)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-2963 | — | < 2.0.14-150000.3.28.1 | 2.0.14-150000.3.28.1 | Oct 14, 2022 | A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault. | ||
| CVE-2021-3467 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened. | ||
| CVE-2021-3443 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened. | ||
| CVE-2021-26927 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Feb 23, 2021 | A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service. | ||
| CVE-2021-26926 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Feb 23, 2021 | A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash. |
- CVE-2022-2963Oct 14, 2022affected < 2.0.14-150000.3.28.1fixed 2.0.14-150000.3.28.1
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.
- CVE-2021-3467Mar 25, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
- CVE-2021-3443Mar 25, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
- CVE-2021-26927Feb 23, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
- CVE-2021-26926Feb 23, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.