jasper (1.900.1-7ubuntu0.10.10.1) maverick-security; urgency=low
* SECURITY UPDATE: denial of service and possible code execution via
heap-based buffer overflows.
- src/libjasper/jpc/jpc_cs.c: validate compparms->numrlvls and allocate
proper size in src/libjasper/jpc/jpc_cs.c.
- Thanks to Red Hat for the patch
- CVE-2011-4516
- CVE-2011-4517
Date: Mon, 19 Dec 2011 10:47:35 -0500
Changed-By: Marc Deslauriers <[email protected]>
Maintainer: Ubuntu Developers <[email protected]>
https://launchpad.net/ubuntu/maverick/+source/jasper/1.900.1-7ubuntu0.10.10.1
Format: 1.8
Date: Mon, 19 Dec 2011 10:47:35 -0500
Source: jasper
Binary: libjasper1 libjasper-dev libjasper-runtime
Architecture: source
Version: 1.900.1-7ubuntu0.10.10.1
Distribution: maverick-security
Urgency: low
Maintainer: Ubuntu Developers <[email protected]>
Changed-By: Marc Deslauriers <[email protected]>
Description:
libjasper-dev - Development files for the JasPer JPEG-2000 library
libjasper-runtime - Programs for manipulating JPEG-2000 files
libjasper1 - The JasPer JPEG-2000 runtime library
Changes:
jasper (1.900.1-7ubuntu0.10.10.1) maverick-security; urgency=low
.
* SECURITY UPDATE: denial of service and possible code execution via
heap-based buffer overflows.
- src/libjasper/jpc/jpc_cs.c: validate compparms->numrlvls and allocate
proper size in src/libjasper/jpc/jpc_cs.c.
- Thanks to Red Hat for the patch
- CVE-2011-4516
- CVE-2011-4517
Checksums-Sha1:
cc8c5352e6920f67e60bc5c759d97b3e4972b2d8 1834
jasper_1.900.1-7ubuntu0.10.10.1.dsc
ec9b5c3da6bef49e887e9128f50464a9486ab0cd 53438
jasper_1.900.1-7ubuntu0.10.10.1.diff.gz
Checksums-Sha256:
a67e4ddf943f9c554cff0acae905a9944cffa106ed2a750e51c533d0570433d2 1834
jasper_1.900.1-7ubuntu0.10.10.1.dsc
b105cf7697c046ad830bcbb76cf761aee77fa42ae02f9f79b33b7f113f5246b7 53438
jasper_1.900.1-7ubuntu0.10.10.1.diff.gz
Files:
2aa176daded8821164c73e9c4c33e584 1834 graphics optional
jasper_1.900.1-7ubuntu0.10.10.1.dsc
dff55ad732e41d302fae8e6290198c8f 53438 graphics optional
jasper_1.900.1-7ubuntu0.10.10.1.diff.gz
Original-Maintainer: Roland Stigge <[email protected]>
--
Maverick-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/maverick-changes