Off-by-one error in the jpc_dec_process_sot function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 image, which triggers a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opensuse | Opensuse | 13.1 (including) | 13.1 (including) |
Opensuse | Opensuse | 13.2 (including) | 13.2 (including) |
Red Hat Enterprise Linux 6 | RedHat | jasper-0:1.900.1-16.el6_6.3 | * |
Red Hat Enterprise Linux 7 | RedHat | jasper-0:1.900.1-26.el7_0.3 | * |
RHEV Manager version 3.5 | RedHat | spice-client-msi-0:3.5-3 | * |
Ghostscript | Ubuntu | lucid | * |
Jasper | Ubuntu | devel | * |
Jasper | Ubuntu | lucid | * |
Jasper | Ubuntu | precise | * |
Jasper | Ubuntu | trusty | * |
Jasper | Ubuntu | utopic | * |