Computer Security
[EN] securityvulns.ru
no-pyccku



jasper library buffer overflow
Published:20.06.2007
Source:BUGTRAQ
SecurityVulns ID:7830
Type:library
Level:5/10
Description:Heap buffer overflow on JPEG-2000 images parsing.
CVE:CVE-2007-2721 (The jpc_qcx_getcompparms function in jpc/jpc_cs.c for the JasPer JPEG-2000 library (libjasper) before 1.900 allows remote user-assisted attackers to cause a denial of service (crash) and possibly corrupt the heap via malformed image files, as originally demonstrated using imagemagick convert.)
Original documentdocumentMANDRIVA, [ MDKSA-2007:129 ] - Updated jasper packages fix vulnerability (20.06.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server