rpm package
suse/jasper&distro=SUSE Linux Enterprise Module for Basesystem 15 SP3
pkg:rpm/suse/jasper&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3
Vulnerabilities (6)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-2963 | — | < 2.0.14-150000.3.28.1 | 2.0.14-150000.3.28.1 | Oct 14, 2022 | A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault. | ||
| CVE-2021-27845 | — | < 2.0.14-3.22.1 | 2.0.14-3.22.1 | Jul 15, 2021 | A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c | ||
| CVE-2021-3467 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened. | ||
| CVE-2021-3443 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened. | ||
| CVE-2021-26927 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Feb 23, 2021 | A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service. | ||
| CVE-2021-26926 | — | < 2.0.14-150000.3.25.1 | 2.0.14-150000.3.25.1 | Feb 23, 2021 | A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash. |
- CVE-2022-2963Oct 14, 2022affected < 2.0.14-150000.3.28.1fixed 2.0.14-150000.3.28.1
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.
- CVE-2021-27845Jul 15, 2021affected < 2.0.14-3.22.1fixed 2.0.14-3.22.1
A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c
- CVE-2021-3467Mar 25, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
- CVE-2021-3443Mar 25, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
- CVE-2021-26927Feb 23, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
- CVE-2021-26926Feb 23, 2021affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1
A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.