gpp_maybe
Security update for jasper
SUSE-SLE-SERVER-12-SP1-2017-27
This update for jasper fixes the following issues: - CVE-2016-8654: Heap-based buffer overflow in QMFB code in JPC codec. (bsc#1012530) - CVE-2016-9395: Invalid jasper files could lead to abort of the library caused by attacker provided image. (bsc#1010977) - CVE-2016-9398: Invalid jasper files could lead to abort of the library caused by attacker provided image. (bsc#1010979) - CVE-2016-9560: Stack-based buffer overflow in jpc_tsfb_getbands2. (bsc#1011830) - CVE-2016-9591: Use-after-free on heap in jas_matrix_destroy. (bsc#1015993)
-
Release DateJan 8 2017
-
ReferencesBugzilla: 1012530, 1010979, 1010977, 1011830, 1015993
CVEs: CVE-2016-8654, CVE-2016-9398, CVE-2016-9560, CVE-2016-9395, CVE-2016-9591 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.1 x86_64
-
Packagesjasper
An Implementation of the JPEG-2000 Standard, Part 1libjasper11.900.14-184.1 lock src
JPEG-2000 librarylibjasper1-32bit1.900.14-184.1 lock rpm
JPEG-2000 library1.900.14-184.1 lock rpm
SUSE Linux Enterprise Server 12.1 ppc64le
-
Packagesjasper
An Implementation of the JPEG-2000 Standard, Part 1libjasper11.900.14-184.1 lock src
JPEG-2000 library1.900.14-184.1 lock rpm
SUSE Linux Enterprise Server 12.1 s390x
-
Packagesjasper
An Implementation of the JPEG-2000 Standard, Part 1libjasper11.900.14-184.1 lock src
JPEG-2000 librarylibjasper1-32bit1.900.14-184.1 lock rpm
JPEG-2000 library1.900.14-184.1 lock rpm