RHSA-2014:2021High
Red Hat Security Advisory: jasper security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2014-8137 — jasper: double-free in in jas_iccattrval_destroy() (oCERT-2014-012) CVE-2014-8138 — jasper: heap overflow in jp2_decode() (oCERT-2014-012) CVE-2014-9029 — jasper: incorrect component number check in COC, RGN and QCC marker segment decoders (oCERT-2014-009)
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2014:2021
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1167537
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1173157
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1173162
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2014/rhsa-2014_2021.json