← Back

CVE-2018-19543

nvd nist
Published: Nov 26, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.

Affected (10)

Show all products
Jasper
1 product
Ubuntu Linux
1 product
Debian Linux
2 products
Linux Enterprise Desktop
Linux Enterprise Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.0.14
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 14.04
Version 16.04
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration D
6 vulnerable
Vulnerable SoftwareAffected Versions
Suse
Version 12 sp3
Version 12 sp4
Suse
Version 11 sp3
Version 11 sp4
Version 12 sp1
Version 12 sp2

References (8)

Timeline

No history available yet.