CVE-2022-40755: Medium severity Jasper Project Jasper vulnerability
Published Sep 16, 2022
·Updated
JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jasimage.c.
Affected Software
1 affected component
Jasper Project Jasper=3.0.6
Event History
Sep 16, 2022
CVE Published
via MITRE·08:16 PM
Data Sourced
via MITRE·08:16 PM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-40755.
2
What is the severity of CVE-2022-40755?
The severity of CVE-2022-40755 is medium.
3
How does CVE-2022-40755 allow denial of service?
CVE-2022-40755 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c.
4
Which software version is affected by CVE-2022-40755?
Jasper version 3.0.6 is affected by CVE-2022-40755.
5
Is there any reference for more information about CVE-2022-40755?
Yes, you can find more information about CVE-2022-40755 at this link: https://github.com/jasper-software/jasper/issues/338