JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jasimage.c.
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
A flaw was found in jasper before 2.0.26. A NULL pointer dereference in jp2decode in jp2dec.c may lead to program crash and denial of service.
Reference: https://github.com/jasper-software/jasper/issues/269
Upstream patch: https://github.com/jasper-software/jasper/commit/f94e7499a8b1471a4905c4f9c9e12e60fe88264b
jp2decode in jp2/jp2dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpcabstorelstepsize in libjasper/jpc/jpcenc.c.
There is a reachable abort in the function jpcdecprocesssot in libjasper/jpc/jpcdec.c of JasPer 2.0.14 that will lead to a remote denial of service attack by triggering an unexpected jasalloc2 return value, a different vulnerability than CVE-2017-13745.
JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpcfirstone in libjasper/jpc/jpcmath.c.
Last updated 25 August 2025
Heap-based buffer overflow in the jpcdecdecodepkt function in jpct2dec.c in JasPer 2.0.10 allows remote attackers to have unspecified impact via a crafted image.
The jasmatrixbindsub function in jasseq.c in JasPer 2.0.10 allows remote attackers to cause a denial of service (invalid read) via a crafted image.
The jasmatrixasl function in jasseq.c in JasPer 1.900.27 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted image.
The jpcundoroi function in libjasper/jpc/jpcdec.c in JasPer 1.900.27 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted image.
libjasper/jpc/jpcdec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via vectors involving left shift of a negative value.
The decclnpass function in libjasper/jpc/jpct1dec.c in JasPer 1.900.27 allows remote attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via a crafted image.
libjasper/include/jasper/jasmath.h in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via vectors involving left shift of a negative value.
libjasper/jp2/jp2dec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via vectors involving left shift of a negative value.
Integer overflow in libjasper/jpc/jpcdec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.
Integer overflow in libjasper/jpc/jpctsfb.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.
JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2encode which failed to check to see if the image contained at least one component resulting in a denial-of-service.
A null pointer dereference was found in the way JasPer decoded certaion JPEG 2000 image files. A specially crafted file could cause an application using JasPer to crash.
Upstream bug:
https://github.com/mdadams/jasper/issues/109
Upstream fix:
https://github.com/mdadams/jasper/commit/a632c6b54bd4ffc3bebab420e00b7e7688aa3846
An assertion failure was possible to trigger in JPCNOMINALGAIN.
CVE assignment:
http://seclists.org/oss-sec/2016/q4/441
An assertion failure was used in JPC bitstream code when integer larger than what can be handled is requested.
Upstream patch:
https://github.com/mdadams/jasper/commit/1e84674d95353c64e5c4c0e7232ae86fd6ea813b
CVE assignment:
http://seclists.org/oss-sec/2016/q4/441
Last updated 25 August 2025
Last updated 25 August 2025
Last updated 25 August 2025
An assertion failure was found in jasper triggered when tiles lie outside of the image area.
Upstream patch:
https://github.com/mdadams/jasper/commit/ba2b9d000660313af7b692542afbd374c5685865
CVE assignment:
http://seclists.org/oss-sec/2016/q4/441
An assertion test was used when ensuring the component domains are the same for the ICT/RCT in the JPC codec.
Upstream patch:
https://github.com/mdadams/jasper/commit/dee11ec440d7908d1daf69f40a3324b27cf213ba
CVE assignment:
http://seclists.org/oss-sec/2016/q4/441
A double free vulnerability was found in memclose in jasstream.c triggered by invoking imginfo command on specially crafted image file.
CVE assignment:
http://www.openwall.com/lists/oss-security/2016/10/16/14
The jpcdecprocesssiz function in libjasper/jpc/jpcdec.c in JasPer before 1.900.4 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted YRsiz value in a BMP image to the imginfo command.
Divide by zero vulnerability was found in jpcdecprocesssiz triggered by invoking imginfo command on specially crafted file.
Upstream patch:
https://github.com/mdadams/jasper/commit/d8c2604cd438c41ec72aff52c16ebd8183068020
CVE assignment:
http://www.openwall.com/lists/oss-security/2016/10/16/14