Search CVE reports


Toggle filters

21 – 30 of 120 results


CVE-2020-27828

Medium priority
Fixed

There's a flaw in jasper's jpc encoder in versions prior to 2.0.23. Crafted input provided to jasper by an attacker could cause an arbitrary out-of-bounds write. This could potentially affect data confidentiality, integrity, or...

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release
Show less packages

CVE-2015-8751

Medium priority
Not affected

Integer overflow in the jas_matrix_create function in JasPer allows context-dependent attackers to have unspecified impact via a crafted JPEG 2000 image, related to integer multiplication for memory allocation.

3 affected packages

ghostscript, jasper, netpbm-free

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
jasper
netpbm-free
Show less packages

CVE-2018-20622

Negligible priority
Vulnerable

JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-20584

Negligible priority
Vulnerable

JasPer 2.0.14 allows remote attackers to cause a denial of service (application hang) via an attempted conversion to the jp2 format.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-20570

Negligible priority
Vulnerable

jp2_encode in jp2/jp2_enc.c in JasPer 2.0.14 has a heap-based buffer over-read.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19543

Negligible priority
Vulnerable

An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19542

Low priority
Fixed

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function jp2_decode in libjasper/jp2/jp2_dec.c, leading to a denial of service.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release
Show less packages

CVE-2018-19541

Negligible priority
Vulnerable

An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26,...

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19540

Low priority
Vulnerable

An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26,...

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19539

Negligible priority
Vulnerable

An issue was discovered in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a denial of service.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Not in release Not in release
Show less packages