vulnerability

Amazon Linux AMI 2: CVE-2021-26927: Security patch for jasper (ALAS-2023-2018)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Feb 23, 2021
Added
Apr 21, 2023
Modified
Apr 21, 2023

Description

A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.

Solutions

amazon-linux-ami-2-upgrade-jasperamazon-linux-ami-2-upgrade-jasper-debuginfoamazon-linux-ami-2-upgrade-jasper-develamazon-linux-ami-2-upgrade-jasper-libsamazon-linux-ami-2-upgrade-jasper-utils
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.