First published: Mon Nov 26 2018(Updated: )
An issue was discovered in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jasper Project Jasper | =2.0.14 | |
SUSE Linux Enterprise Desktop | =12-sp3 | |
SUSE Linux Enterprise Desktop | =12-sp4 | |
SUSE Linux Enterprise Server | =11-sp3 | |
SUSE Linux Enterprise Server | =11-sp4 | |
SUSE Linux Enterprise Server | =12-sp1 | |
SUSE Linux Enterprise Server | =12-sp2 | |
Debian Debian Linux | =8.0 | |
openSUSE Leap | =15.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19539 is a vulnerability discovered in JasPer 2.0.14 that allows an attacker to cause a denial of service.
CVE-2018-19539 has a severity level of medium.
JasPer 2.0.14 is affected by CVE-2018-19539.
There is no known fix for CVE-2018-19539 at the moment. It is recommended to update to a patched version when available.
Yes, you can find more information about CVE-2018-19539 at the following links: [Link 1](http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00004.html), [Link 2](https://github.com/mdadams/jasper/issues/182), [Link 3](https://lists.debian.org/debian-lts-announce/2019/01/msg00003.html).