CVE-2021-3272
27.01.2021, 08:15
jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jasper_project | jasper | 2.0.24 |
𝑥
= Vulnerable software versions
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libjasper-devel |
| ||||||||||||||||
| libjasper1 |
| ||||||||||||||||
| libjasper1-32bit |
| ||||||||||||||||
| libjasper4 |
| ||||||||||||||||
| libjasper7 |
|
Red Hat Enterprise Linux Releases
Common Weakness Enumeration
References