CVE-2016-8886 PUBLISHED

The jas_malloc function in libjasper/base/jas_malloc.c in JasPer before 1.900.11 allows remote attackers to have unspecified impact via a crafted file, which triggers a memory allocation failure.

EPSS 0.32% · 54.5th percentile

Risk Scores

EPSS Score
0.32%
54.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSjasper0, 1.900.1-debian1-2.4, 1.900.1-debian1-2.4ubuntu1

Timeline

References

Open in Interactive Console →