CVE-2025-8835 | JasPer up to 4.2.5 Image Color Space Conversion jas_image.c jas_image_chclrspc null pointer dereference (Issue 400 / Nessus ID 259916)
A vulnerability classified as problematic was found in JasPer up to 4.2.5. Impacted is the function jas_image_chclrspc of the file src/libjasper/base/jas_image.c of the component Image Color Space Conversion Handler. The manipulation results in null pointer dereference.
This vulnerability was named CVE-2025-8835. The attack needs to be approached locally. In addition, an exploit is available.
Applying a patch is advised to resolve this issue.