PT-2017-13072 · Jasper · Jasper
Publicado
2017-08-29
·
Atualizado
2024-06-15
·
CVE-2017-13750
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
JasPer version 2.0.12
Description
The issue is related to a reachable assertion abort in the function jpc dec process siz() in jpc/jpc dec.c, which can lead to a remote denial of service attack.
Recommendations
For JasPer version 2.0.12, consider applying a patch or fix to resolve the issue in the jpc dec process siz() function to prevent remote denial of service attacks.
Exploit
Correção
Assertion Failure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Jasper