PT-2016-7787 · Jasper+5 · Jasper+5

Liu Bingchang

·

Published

2016-12-16

·

Updated

2024-06-15

·

CVE-2016-9591

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions JasPer versions prior to 2.0.12
Description The issue arises from a use-after-free when decoding certain JPEG 2000 image files, which can cause a crash in the application using JasPer.
Recommendations For versions prior to 2.0.12, update to version 2.0.12 or later to resolve the issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1947
CESA-2017_1208
CVE-2016-9591
DLA-920-1
DSA-3827-1
MGASA-2017-0474
OPENSUSE-SU-2017_0101-1
OPENSUSE-SU-2024:10869-1
RHSA-2017:1208
RHSA-2017_1208
SUSE-SU-2017:0084-1
SUSE-SU-2017:0946-1
USN-3295-1

Affected Products

Alt Linux
Centos
Jasper
Red Hat
Suse
Ubuntu