The jpc_dec_process_siz function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.4 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted YRsiz value in a BMP image to the imginfo command.
References
Configurations
History
No history.
Information
Published : 2017-02-15 19:59
Updated : 2025-04-20 01:37
NVD link : CVE-2016-8692
Mitre link : CVE-2016-8692
CVE.ORG link : CVE-2016-8692
JSON object : View
Products Affected
jasper_project
- jasper
debian
- debian_linux
fedoraproject
- fedora
CWE
CWE-369
Divide By Zero