yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2015-8751
Component Overview
Vulnerability Overview
Name
CVE-2015-8751
Source
NVD (
link
)
Debian (
link
)
Description
Integer overflow in the jas_matrix_create function in JasPer allows context-dependent attackers to have unspecified impact via a crafted JPEG 2000 image, related to integer multiplication for memory allocation.
CWEs
CWE-190
Published Date
Feb 17, 2020
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.openwall.com/lists/oss-security/2016/01/07/10
Exploit
http://www.openwall.com/lists/oss-security/2016/01/08/2
Mailing List
http://www.openwall.com/lists/oss-security/2016/01/11/3
Mailing List
http://www.securityfocus.com/bid/80035
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1294039
Exploit
https://lists.apache.org/thread.html/re28d4c3c5b77138de47bf5b2ad04886d9104eb74ae3594e5f7254318%40%3Cdev.tomcat.apache.org%3E
Mailing List
https://lists.apache.org/thread.html/rf15130c7b5f703664ce57a97934ffb8cc6065cbb1bf678dca8651519%40%3Cdev.tomcat.apache.org%3E
Mailing List
http://www.openwall.com/lists/oss-security/2016/01/07/10
Exploit
http://www.openwall.com/lists/oss-security/2016/01/08/2
Mailing List
http://www.openwall.com/lists/oss-security/2016/01/11/3
Mailing List
http://www.securityfocus.com/bid/80035
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1294039
Exploit
https://lists.apache.org/thread.html/re28d4c3c5b77138de47bf5b2ad04886d9104eb74ae3594e5f7254318%40%3Cdev.tomcat.apache.org%3E
Mailing List
https://lists.apache.org/thread.html/rf15130c7b5f703664ce57a97934ffb8cc6065cbb1bf678dca8651519%40%3Cdev.tomcat.apache.org%3E
Mailing List
Analysis
#
Affected Component
Analysis
jasper
Not Affected
Vulnerability Ratings
#
8.8
CVSSv31
6.8
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
jasper
buildroot
2025.02.x
2.0.33
Not Affected
jasper
buildroot
master
4.2.9
Not Affected
jasper
yocto
kirkstone
2.0.33
Not Affected
jasper
yocto
master
4.2.9
Not Affected