CVE-2017-9782 PUBLISHED

JasPer 2.0.12 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted image, related to the jp2_decode function in libjasper/jp2/jp2_dec.c.

EPSS 0.40% · 60.2th percentile

Risk Scores

EPSS Score
0.40%
60.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSjasper0, 1.900.1-debian1-2.4, 1.900.1-debian1-2.4ubuntu1

Timeline

References

Open in Interactive Console →