Memory leak in the jas_iccprof_createfrombuf function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted ICC color profile in a JPEG 2000 image file.
References
Configurations
History
No history.
Information
Published : 2016-04-13 14:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2116
Mitre link : CVE-2016-2116
CVE.ORG link : CVE-2016-2116
JSON object : View
Products Affected
jasper_project
- jasper
canonical
- ubuntu_linux
CWE
CWE-399
Resource Management Errors