Double free vulnerability in the jasper_image_stop_load function in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted JPEG 2000 image file.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fedora | Fedoraproject | 23 (including) | 23 (including) |
Fedora | Fedoraproject | 24 (including) | 24 (including) |
Fedora | Fedoraproject | 25 (including) | 25 (including) |
Red Hat Enterprise Linux 6 | RedHat | jasper-0:1.900.1-21.el6_9 | * |
Red Hat Enterprise Linux 7 | RedHat | jasper-0:1.900.1-30.el7_3 | * |
Jasper | Ubuntu | precise | * |
Jasper | Ubuntu | trusty | * |
Jasper | Ubuntu | vivid | * |
Jasper | Ubuntu | vivid/stable-phone-overlay | * |
Jasper | Ubuntu | wily | * |
Jasper | Ubuntu | xenial | * |
Jasper | Ubuntu | yakkety | * |