Memory leak in the jas_iccprof_createfrombuf function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted ICC color profile in a JPEG 2000 image file.
References
Information
Published : 2016-04-13 07:59
Updated : 2018-01-04 18:30
NVD link : CVE-2016-2116
Mitre link : CVE-2016-2116
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
canonical
- ubuntu_linux
jasper_project
- jasper