Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18003
HistoryMay 02, 2019 - 6:10 a.m.

Denial Of Service (DoS) Through Divide By Zero

2019-05-0206:10:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.006 Low

EPSS

Percentile

77.6%

JasPer is vulnerable to denial of service attacks. A remote attacker could cause an application crash via a crafted YRsiz value in a BMP image to the imginfo command. Affected by this vulnerability is the function jpc_dec_process_siz of the file libjasper/jpc/jpc_dec.c of the component imginfo.