CVE-2015-8751

Name
CVE-2015-8751
Description
Integer overflow in the jas_matrix_create function in JasPer allows context-dependent attackers to have unspecified impact via a crafted JPEG 2000 image, related to integer multiplication for memory allocation.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Mailing List http://www.openwall.com/lists/oss-security/2016/01/11/3
Exploit https://bugzilla.redhat.com/show_bug.cgi?id=1294039
Third Party Advisory http://www.securityfocus.com/bid/80035
Exploit http://www.openwall.com/lists/oss-security/2016/01/07/10
Mailing List http://www.openwall.com/lists/oss-security/2016/01/08/2
MLIST https://lists.apache.org/thread.html/re28d4c3c5b77138de47bf5b2ad04886d9104eb74ae3594e5f7254318@%3Cdev.tomcat.apache.org%3E
MLIST https://lists.apache.org/thread.html/rf15130c7b5f703664ce57a97934ffb8cc6065cbb1bf678dca8651519@%3Cdev.tomcat.apache.org%3E
Mailing List https://lists.apache.org/thread.html/re28d4c3c5b77138de47bf5b2ad04886d9104eb74ae3594e5f7254318%40%3Cdev.tomcat.apache.org%3E
Mailing List https://lists.apache.org/thread.html/rf15130c7b5f703664ce57a97934ffb8cc6065cbb1bf678dca8651519%40%3Cdev.tomcat.apache.org%3E

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:jasper_project:jasper:-:*:*:*:*:*:*:* jasper == None == -
cpe:2.3:a:jasper_project:jasper:*:*:*:*:*:*:*:* jasper >= None < 1.900.4

Vulnerable and fixed packages

Source package Branch Version Maintainer Status