vulnerability

Amazon Linux 2023: CVE-2023-51257: Low priority package update for jasper

Severity
7
CVSS
(AV:L/AC:M/Au:S/C:C/I:C/A:C)
Published
Jan 14, 2024
Added
Feb 17, 2025
Modified
Jul 4, 2025

Description

An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.
A flaw in jasper was discovered where an invalid memory write occurred due to the absence of a proper range check in the JPC encoder.

Solutions

amazon-linux-2023-upgrade-jasperamazon-linux-2023-upgrade-jasper-debuginfoamazon-linux-2023-upgrade-jasper-debugsourceamazon-linux-2023-upgrade-jasper-develamazon-linux-2023-upgrade-jasper-libsamazon-linux-2023-upgrade-jasper-libs-debuginfoamazon-linux-2023-upgrade-jasper-utilsamazon-linux-2023-upgrade-jasper-utils-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.