MGASA-2020-0337

Source
https://advisories.mageia.org/MGASA-2020-0337.html
Import Source
https://advisories.mageia.org/MGASA-2020-0337.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2020-0337
Related
Published
2020-08-18T20:43:16Z
Modified
2020-08-18T20:01:50Z
Summary
Updated jasper packages fix security vulnerabilities
Details

The jasmatrixbindsub function in jas_seq.c in JasPer 2.0.10 allows remote attackers to cause a denial of service (invalid read) via a crafted image (CVE-2017-6851).

Heap-based buffer overflow in the jpcdecdecodepkt function in jpc_t2dec.c in JasPer 2.0.10 allows remote attackers to have unspecified impact via a crafted image (CVE-2017-6852).

JasPer 2.0.12 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted image, related to the jp2decode function in libjasper/jp2/jp2dec.c (CVE-2017-9782).

There is a reachable assertion abort in the function jpcdecprocesssot() in jpc/jpcdec.c in JasPer 2.0.12 that will lead to a remote denial of service attack by triggering an unexpected jpc_ppmstabtostreams return value (CVE-2017-13745).

There is a reachable assertion abort in the function jpcdecprocesssiz() in jpc/jpcdec.c:1297 in JasPer 2.0.12 that will lead to a remote denial of service attack (CVE-2017-13746).

There are lots of memory leaks in JasPer 2.0.12, triggered in the function jasstrdup() in base/jasstring.c, that will lead to a remote denial of service attack (CVE-2017-13748).

There is a reachable assertion abort in the function jpcpinextrpcl() in jpc/jpc_t2cod.c in JasPer 2.0.12 that will lead to a remote denial of service attack (CVE-2017-13749).

There is a reachable assertion abort in the function jpcdecprocesssiz() in jpc/jpcdec.c:1296 in JasPer 2.0.12 that will lead to a remote denial of service attack (CVE-2017-13750).

There is a reachable assertion abort in the function calcstepsizes() in jpc/jpc_dec.c in JasPer 2.0.12 that will lead to a remote denial of service attack (CVE-2017-13751).

JasPer 2.0.13 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted image, related to the jasimageishomosamp function in libjasper/base/jas_image.c (CVE-2017-14132).

JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpcabstorelstepsize in libjasper/jpc/jpcenc.c (CVE-2018-9252).

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function rasputdatastd in ras/rasenc.c (CVE-2018-18873).

An issue has been found in JasPer 2.0.14. There is a memory leak in jasmalloc.c when called from jpcunkgetparms in jpccs.c (CVE-2018-19139).

An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2decode in libjasper/jp2/jp2dec.c (CVE-2018-19543).

jp2encode in jp2/jp2enc.c in JasPer 2.0.14 has a heap-based buffer over-read (CVE-2018-20570).

JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used (CVE-2018-20622).

References
Credits

Affected packages