jasper (SL7)

Synopsis: Low: jasper security update
Advisory ID: SLSA-2018:3253-1
Issue Date: 2018-10-30
CVE Numbers: CVE-2016-9396
CVE-2017-1000050

Security Fix(es):

* jasper: reachable assertion in JPC_NOMINALGAIN() (CVE-2016-9396)

* jasper: NULL pointer exception in jp2_encode() (CVE-2017-1000050)

SL7
x86_64
jasper-debuginfo-1.900.1-33.el7.i686.rpm
jasper-debuginfo-1.900.1-33.el7.x86_64.rpm
jasper-libs-1.900.1-33.el7.i686.rpm
jasper-libs-1.900.1-33.el7.x86_64.rpm
jasper-1.900.1-33.el7.x86_64.rpm
jasper-devel-1.900.1-33.el7.i686.rpm
jasper-devel-1.900.1-33.el7.x86_64.rpm
jasper-utils-1.900.1-33.el7.x86_64.rpm

– Scientific Linux Development Team