Bugzilla – Bug 1203518
VUL-0: CVE-2022-40755: jasper: denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c.
Last modified: 2022-09-19 10:20:47 UTC
CVE-2022-40755 JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c. Upstream issue: https://github.com/jasper-software/jasper/issues/338 References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-40755 https://github.com/jasper-software/jasper/issues/338 https://www.cve.org/CVERecord?id=CVE-2022-40755
The assertion reached is very recent. None of the codestream is affected.