CVE-2018-20584: Medium severity jasper reports vulnerability
JasPer 2.0.14 allows remote attackers to cause a denial of service (application hang) via an attempted conversion to the jp2 format.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-20584.
What is the severity level of CVE-2018-20584?
The severity level of CVE-2018-20584 is medium.
How does CVE-2018-20584 affect JasPer?
CVE-2018-20584 allows remote attackers to cause a denial of service (application hang) via an attempted conversion to the jp2 format.
Which software versions are affected by CVE-2018-20584?
JasPer 2.0.14, Debian Linux 8.0, and Oracle Outside In Technology 8.5.4 are affected by CVE-2018-20584.
Where can I find more information about CVE-2018-20584?
You can find more information about CVE-2018-20584 at the following references: [Security Focus](http://www.securityfocus.com/bid/106356), [GitHub](https://github.com/mdadams/jasper/issues/192), [Debian LTS Announce](https://lists.debian.org/debian-lts-announce/2019/01/msg00003.html).