VDB
BDU%3A2020-01728
BDU%3A2020-01728
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции jas_icctxtdesc_input набора библиотек JasPer, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Novell Inc., Fedora Project, Сообщество свободного программного обеспечения, The Jasper Project | Red Hat Enterprise Linux, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, SUSE Linux Enterprise Module for Open Buildservice Development Tools, Suse Linux Enterprise Server, Fedora, SUSE Linux Enterprise Module for Basesystem, OpenSUSE Leap, SUSE Linux Enterprise Module for Desktop Applications, Debian GNU/Linux, JasPer, SUSE Linux Enterprise High Performance Computing |
Timeline
- Apr 23, 2020 CVE Published
References
- https://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-19540.html url
- https://github.com/mdadams/jasper/issues/182 url
- https://lists.opensuse.org/opensuse-security-announce/2019-10/msg00023.html url
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00025.html url
- https://lists.debian.org/debian-lts-announce/2019/01/msg00003.html url
- https://www.suse.com/security/cve/CVE-2018-19540/ advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1658782 advisory
- https://access.redhat.com/security/cve/cve-2018-19540 advisory
- https://security-tracker.debian.org/tracker/CVE-2018-19540 advisory
- https://security-tracker.debian.org/tracker/DLA-1628-1 advisory