CVE-2016-8693

Double free vulnerability in the mem_close function in jas_stream.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted BMP image to the imginfo command.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jasper_project:jasper:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-02-15 19:59

Updated : 2024-02-04 19:11


NVD link : CVE-2016-8693

Mitre link : CVE-2016-8693

CVE.ORG link : CVE-2016-8693


JSON object : View

Products Affected

opensuse

  • opensuse

fedoraproject

  • fedora

jasper_project

  • jasper
CWE
CWE-415

Double Free