First published: Wed Oct 26 2016(Updated: )
Memory allocation failure in jas_malloc triggered by crafted file was found. CVE assignment: <a href="http://seclists.org/oss-sec/2016/q4/214">http://seclists.org/oss-sec/2016/q4/214</a>
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/jasper | <1.900.11 | 1.900.11 |
Jasper Reports | <=1.900.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8886 is classified as a medium severity vulnerability due to the potential for remote code execution.
To fix CVE-2016-8886, upgrade to JasPer version 1.900.11 or later.
CVE-2016-8886 allows attackers to exploit memory allocation failures through crafted files.
CVE-2016-8886 affects JasPer versions prior to 1.900.11.
CVE-2016-8886 is a remote vulnerability that can be exploited by attackers over the network.