Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dgh05T

#20315of 53,630
12.6Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2021-17181
7.1
2021-02-09
Jasper · Jasper · CVE-2021-26926
Name of the Vulnerable Software and Affected Versions: jasper versions prior to 2.0.25 Description: A flaw was found in the jp2 decode function, which may lead to disclosure of information or program crash due to an out of bounds read issue. Recommendations: For versions prior to 2.0.25, update to version 2.0.25 or later to resolve the issue. As a temporary workaround, consider restricting access to the jp2 decode function until a patch is available.
PT-2021-17182
5.5
2021-02-09
Jasper · Jasper · CVE-2021-26927
Name of the Vulnerable Software and Affected Versions: jasper versions prior to 2.0.25 Description: A flaw was found in the jasper software, where a null pointer dereference in `jp2 decode` in `jp2 dec.c` may lead to a program crash and denial of service. Recommendations: For versions prior to 2.0.25, update to version 2.0.25 or later to resolve the issue. As a temporary workaround, consider restricting access to the `jp2 decode` function in `jp2 dec.c` to minimize the risk of exploitation.