VYPR

rpm package

suse/jasper&distro=SUSE Linux Enterprise Module for Basesystem 15 SP3

pkg:rpm/suse/jasper&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3

Vulnerabilities (6)

  • CVE-2022-2963Oct 14, 2022
    affected < 2.0.14-150000.3.28.1fixed 2.0.14-150000.3.28.1

    A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.

  • CVE-2021-27845Jul 15, 2021
    affected < 2.0.14-3.22.1fixed 2.0.14-3.22.1

    A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c

  • CVE-2021-3467Mar 25, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.

  • CVE-2021-3443Mar 25, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.

  • CVE-2021-26927Feb 23, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.

  • CVE-2021-26926Feb 23, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.