CVE-2025-8836 | JasPer up to 4.2.5 JPEG2000 Encoder jpc_enc.c jpc_floorlog2 assertion (Issue 401 / Nessus ID 259919)
A vulnerability, which was classified as problematic, has been found in JasPer up to 4.2.5. The affected element is the function jpc_floorlog2 of the file src/libjasper/jpc/jpc_enc.c of the component JPEG2000 Encoder. This manipulation causes reachable assertion.
The identification of this vulnerability is CVE-2025-8836. The attack can only be executed locally. Furthermore, there is an exploit available.
It is suggested to install a patch to address this issue.