Lucene search

K
osvGoogleOSV:DLA-101-1
HistoryDec 06, 2014 - 12:00 a.m.

jasper - security update

2014-12-0600:00:00
Google
osv.dev
14

0.425 Medium

EPSS

Percentile

97.3%

Josh Duart of the Google Security Team discovered heap-based buffer
overflow flaws in JasPer, a library for manipulating JPEG-2000 files,
which could lead to denial of service (application crash) or the
execution of arbitrary code.

For Debian 6 Squeeze, these issues have been fixed in jasper version 1.900.1-7+squeeze2

CPENameOperatorVersion
jaspereq1.900.1-7+squeeze1
jaspereq1.900.1-7