CVE-2018-19139: Medium severity Jasper Project Jasper vulnerability
An issue has been found in JasPer 2.0.14. There is a memory leak in jasmalloc.c when called from jpcunkgetparms in jpccs.c.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-19139?
The severity of CVE-2018-19139 is medium with a severity value of 5.5.
What software is affected by CVE-2018-19139?
Jasper Project Jasper 2.0.14, Redhat Fedora, and Debian Debian Linux 8.0 are affected by CVE-2018-19139.
What is the issue in Jasper Project Jasper 2.0.14 related to CVE-2018-19139?
The issue in Jasper Project Jasper 2.0.14 related to CVE-2018-19139 is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.
How can I fix CVE-2018-19139?
To fix CVE-2018-19139, it is recommended to update Jasper Project Jasper to the latest version available.
Where can I find more information about CVE-2018-19139?
More information about CVE-2018-19139 can be found at the following references: http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00082.html, http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00085.html, http://www.securityfocus.com/bid/105956.