CVE-2021-3272: Out-of-bounds Read
(updated )
jp2_decode in jp2/jp2_dec.c
in libjasper in JasPer has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
References
Detect and mitigate CVE-2021-3272 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →