Lucene search

K
osvGoogleOSV:CVE-2016-9262
HistoryMar 23, 2017 - 6:59 p.m.

CVE-2016-9262

2017-03-2318:59:00
Google
osv.dev
2

6.8 Medium

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

82.0%

Multiple integer overflows in the (1) jas_realloc function in base/jas_malloc.c and (2) mem_resize function in base/jas_stream.c in JasPer before 1.900.22 allow remote attackers to cause a denial of service via a crafted image, which triggers use after free vulnerabilities.