[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:0946-1 -- SLES libjasper

ID: oval:org.secpod.oval:def:89044852Date: (C)2021-07-20   (M)2022-10-10
Class: PATCHFamily: unix




This update for jasper fixes the following issues: Security issues fixed: - CVE-2016-8654: Heap-based buffer overflow in QMFB code in JPC codec - CVE-2016-9395: Missing sanity checks on the data in a SIZ marker segment . - CVE-2016-9398: jpc_math.c:94: int jpc_floorlog2: Assertion "x 0" failed. - CVE-2016-9560: stack-based buffer overflow in jpc_tsfb_getbands2 - CVE-2016-9583: Out of bounds heap read in jpc_pi_nextpcrl - CVE-2016-9591: Use-after-free on heap in jas_matrix_destroy - CVE-2016-9600: Null Pointer Dereference due to missing check for UNKNOWN color space in JP2 encoder - CVE-2016-10251: Use of uninitialized value in jpc_pi_nextcprl - CVE-2017-5498: left-shift undefined behaviour - CVE-2017-6850: NULL pointer dereference in jp2_cdef_destroy

Platform:
SUSE Linux Enterprise Server 11 SP4
Product:
libjasper
Reference:
SUSE-SU-2017:0946-1
CVE-2016-10251
CVE-2016-8654
CVE-2016-9395
CVE-2016-9398
CVE-2016-9560
CVE-2016-9583
CVE-2016-9591
CVE-2016-9600
CVE-2017-5498
CVE-2017-6850
CVE    10
CVE-2016-9395
CVE-2016-9398
CVE-2017-5498
CVE-2016-10251
...
CPE    1
cpe:/o:suse:suse_linux_enterprise_server:11:sp4

© SecPod Technologies