First published: Sat Sep 09 2017(Updated: )
There is an infinite loop in the jpc_dec_tileinit function in jpc/jpc_dec.c of Jasper 2.0.13. It will lead to a remote denial of service attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jasper Reports | =2.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14229 has a severity rating that indicates it can lead to a remote denial of service attack.
To fix CVE-2017-14229, update Jasper to a version later than 2.0.13.
CVE-2017-14229 is caused by an infinite loop in the jpc_dec_tileinit function found in Jasper 2.0.13.
CVE-2017-14229 affects users of Jasper version 2.0.13.
CVE-2017-14229 can lead to service interruptions due to remote denial of service attacks.