Skip to main content

Vendor/product archive

jasper_project / jasper CVEs

Beta · best-effort

101 CVEs tagged to jasper_project / jasper2 Critical, 40 High, 56 Medium, 3 Low, 0 Unrated.

CVE-2025-8837

Published Aug 11, 2025

A vulnerability was identified in JasPer up to 4.2.5. This affects the function jpc_dec_dump of the file src/libjasper/jpc/jpc_dec.c of the component JPEG2000 File Handler. The ma…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-8836

Published Aug 11, 2025

A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file src/libjasper/jpc/jpc_enc.c of the component JPEG2000 Encode…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-8835

Published Aug 11, 2025

A vulnerability was found in JasPer up to 4.2.5. Affected by this vulnerability is the function jas_image_chclrspc of the file src/libjasper/base/jas_image.c of the component Imag…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-51257

Published Jan 16, 2024

An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40755

Published Sep 16, 2022

JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27845

Published Jul 15, 2021

A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-3467

Published Mar 25, 2021

A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 image format decoder. A specially crafted JP…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8751

Published Feb 17, 2020

Integer overflow in the jas_matrix_create function in JasPer allows context-dependent attackers to have unspecified impact via a crafted JPEG 2000 image, related to integer multip…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-14232

Published Aug 15, 2019

The read_chunk function in flif-dec.cpp in Free Lossless Image Format (FLIF) 0.3 allows remote attackers to cause a denial of service (invalid memory read and application crash) v…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 101 CVEsPage 1 of 5