CVE-2017-5503: Medium severity Jasper Project Jasper vulnerability
Published Mar 1, 2017
·Updated
The decclnpass function in libjasper/jpc/jpct1dec.c in JasPer 1.900.27 allows remote attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via a crafted image.
Affected Software
1 affected component
Jasper Project Jasper=1.900.27
Event History
Mar 1, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-5503?
CVE-2017-5503 has a severity rating that indicates it can lead to denial of service conditions.
2
What type of vulnerability is CVE-2017-5503?
CVE-2017-5503 is a denial of service vulnerability that allows attackers to potentially crash the application.
3
How do I fix CVE-2017-5503?
To fix CVE-2017-5503, update to a patched version of JasPer that addresses this vulnerability.
4
What software is affected by CVE-2017-5503?
CVE-2017-5503 affects JasPer version 1.900.27.
5
Can CVE-2017-5503 lead to data loss?
While CVE-2017-5503 primarily causes a denial of service, it could potentially lead to data loss depending on the context of the attack.