JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded creation of JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://access.redhat.com/errata/RHSA-2017:1208 | third party advisory vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1410026 | issue tracking third party advisory patch |
https://usn.ubuntu.com/3693-1/ | third party advisory vendor advisory |