VYPR

rpm package

suse/jasper&distro=SUSE Linux Enterprise Real Time 15 SP2

pkg:rpm/suse/jasper&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP2

Vulnerabilities (5)

  • CVE-2021-27845Jul 15, 2021
    affected < 2.0.14-3.22.1fixed 2.0.14-3.22.1

    A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c

  • CVE-2021-3467Mar 25, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.

  • CVE-2021-3443Mar 25, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.

  • CVE-2021-26927Feb 23, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.

  • CVE-2021-26926Feb 23, 2021
    affected < 2.0.14-150000.3.25.1fixed 2.0.14-150000.3.25.1

    A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.