Lucene search

K
osvGoogleOSV:CVE-2016-10250
HistoryMar 15, 2017 - 2:59 p.m.

CVE-2016-10250

2017-03-1514:59:00
Google
osv.dev
7

5.5 Medium

AI Score

Confidence

High

0.007 Low

EPSS

Percentile

80.7%

The jp2_colr_destroy function in jp2_cod.c in JasPer before 1.900.13 allows remote attackers to cause a denial of service (NULL pointer dereference) by leveraging incorrect cleanup of JP2 box data on error. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8887.

5.5 Medium

AI Score

Confidence

High

0.007 Low

EPSS

Percentile

80.7%