First published: Mon Nov 28 2016(Updated: )
A heap-buffer overflow vulnerability was found in QMFB code in JPC codec caused by buffer being allocated with too small size. Upstream bugs: <a href="https://github.com/mdadams/jasper/issues/93">https://github.com/mdadams/jasper/issues/93</a> <a href="https://github.com/mdadams/jasper/issues/94">https://github.com/mdadams/jasper/issues/94</a> Upstream patch: <a href="https://github.com/mdadams/jasper/commit/4a59cfaf9ab3d48fca4a15c0d2674bf7138e3d1a">https://github.com/mdadams/jasper/commit/4a59cfaf9ab3d48fca4a15c0d2674bf7138e3d1a</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jasper Project Jasper | <2.0.0 | |
Debian Debian Linux | =8.0 | |
Redhat Enterprise Linux Desktop | =6.0 | |
Redhat Enterprise Linux Desktop | =7.0 | |
Redhat Enterprise Linux Server | =6.0 | |
Redhat Enterprise Linux Server | =7.0 | |
Redhat Enterprise Linux Server Aus | =7.3 | |
Redhat Enterprise Linux Server Aus | =7.4 | |
Redhat Enterprise Linux Server Eus | =7.3 | |
Redhat Enterprise Linux Server Eus | =7.4 | |
Redhat Enterprise Linux Server Eus | =7.5 | |
Redhat Enterprise Linux Workstation | =6.0 | |
Redhat Enterprise Linux Workstation | =7.0 | |
redhat/jasper | <2.0.0 | 2.0.0 |
debian/jasper |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.