[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:0084-1 -- SLES jasper, libjasper1

ID: oval:org.secpod.oval:def:89044889Date: (C)2021-07-20   (M)2022-10-10
Class: PATCHFamily: unix




This update for jasper fixes the following issues: - CVE-2016-8654: Heap-based buffer overflow in QMFB code in JPC codec. - CVE-2016-9395: Invalid jasper files could lead to abort of the library caused by attacker provided image. - CVE-2016-9398: Invalid jasper files could lead to abort of the library caused by attacker provided image. - CVE-2016-9560: Stack-based buffer overflow in jpc_tsfb_getbands2. - CVE-2016-9591: Use-after-free on heap in jas_matrix_destroy

Platform:
SUSE Linux Enterprise Server 12 SP2
Product:
jasper
libjasper1
Reference:
SUSE-SU-2017:0084-1
CVE-2016-8654
CVE-2016-9395
CVE-2016-9398
CVE-2016-9560
CVE-2016-9591
CVE    5
CVE-2016-9395
CVE-2016-9398
CVE-2016-8654
CVE-2016-9560
...
CPE    3
cpe:/a:jasper:libjasper1
cpe:/o:suse:suse_linux_enterprise_server:12:sp2
cpe:/a:jasper_project:jasper

© SecPod Technologies