A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.
References
Link | Resource |
---|---|
https://github.com/jasper-software/jasper/issues/264 | Exploit Issue Tracking Third Party Advisory |
https://github.com/jasper-software/jasper/commit/41f214b121b837fa30d9ca5f2430212110f5cd9b | Patch Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JYVCFVTVPL66OS7LCNLUSYCMYQAVWXMM/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YRZFZSJ4UVLLMXSKHR455TAC2SD3TOHI/ | Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JSXESYUHMO522Z3RHXOQ2SJNWP3XTO67/ | Mailing List Third Party Advisory |
Information
Published : 2021-02-23 10:15
Updated : 2021-03-22 09:09
NVD link : CVE-2021-26926
Mitre link : CVE-2021-26926
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
jasper_project
- jasper
fedoraproject
- fedora