Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7257
HistoryAug 08, 2018 - 3:22 a.m.

Use-After-Free (UAF)

2018-08-0803:22:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.009 Low

EPSS

Percentile

83.2%

libjasper.so is affected by a use-after-free (UAF) vulnerability. This is due to the way tvp and tvp->buf are freed in the mif_process_cmpt function in libjasper/mif/mif_cod.c which would allow remote attackers to cause a denial of service using a crafted JPEG 2000 image file.