Jasper 2.0.14 consente agli aggressori remoti di causare un denial of service (applicazione si blocchi) attraverso un tentativo di conversione al formato JP2. |
http://www.securityfocus.com/bid/106356 https://security.gentoo.org/glsa/201908-03 https://github.com/mdadams/jasper/issues/192 https://www.oracle.com/security-alerts/cpuapr2020.html https://lists.debian.org/debian-lts-announce/2019/01/msg00003.html https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20584 |
Vulnerabilità: CVE-2018-20584
