Double free vulnerability in the jasper_image_stop_load function in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted JPEG 2000 image file.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fedora | Fedoraproject | 23 (including) | 23 (including) |
Fedora | Fedoraproject | 24 (including) | 24 (including) |
Fedora | Fedoraproject | 25 (including) | 25 (including) |