[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250363

 
 

909

 
 

196124

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2020:2690-1 -- SLES jasper, libjasper1

ID: oval:org.secpod.oval:def:89000462Date: (C)2021-02-23   (M)2023-10-10
Class: PATCHFamily: unix




This update for jasper fixes the following issues: - CVE-2016-9398: Improved patch for already fixed issue . - CVE-2016-9399: Fix assert in calcstepsizes . - CVE-2016-9397: Fix assert in jpc_dequantize . - CVE-2016-9557: Fix signed integer overflow . - CVE-2017-5499: Validate component depth bit . - CVE-2017-5503: Check bounds in jas_seq2d_bindsub . - CVE-2017-5504: Check bounds in jas_seq2d_bindsub . - CVE-2017-5505: Check bounds in jas_seq2d_bindsub . - CVE-2017-14132: Fix heap base overflow in by checking components . - CVE-2018-9154: Fixed a potential denial of service in jpc_dec_process_sot . - CVE-2018-9252: Fix reachable assertion in jpc_abstorelstepsize . - CVE-2018-18873: Fix null pointer deref in ras_putdatastd . - CVE-2018-19139: Fix mem leaks by registering jpc_unk_destroyparms . - CVE-2018-19543, bsc#1045450 CVE-2017-9782: Fix numchans mixup . - CVE-2018-20570: Fix heap based buffer over-read in jp2_encode . - CVE-2018-20622: Fix memory leak in jas_malloc.c .

Platform:
SUSE Linux Enterprise Server 12 SP5
Product:
jasper
libjasper1
Reference:
SUSE-SU-2020:2690-1
CVE-2016-9397
CVE-2016-9398
CVE-2016-9399
CVE-2016-9557
CVE-2017-14132
CVE-2017-5499
CVE-2017-5503
CVE-2017-5504
CVE-2017-5505
CVE-2017-9782
CVE-2018-18873
CVE-2018-19139
CVE-2018-19543
CVE-2018-20570
CVE-2018-20622
CVE-2018-9154
CVE-2018-9252
CVE    17
CVE-2016-9397
CVE-2016-9557
CVE-2016-9399
CVE-2016-9398
...

© SecPod Technologies