Mageia 2019-0381: jasper security update
Summary
Heap based overflow in jas_icctxtdesc_input (CVE-2018-19540).
Heap based overread in jas_image_depalettize (CVE-2018-19541).
References
- https://bugs.mageia.org/show_bug.cgi?id=25800
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19540
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19541
Resolution
MGASA-2019-0381 - Updated jasper packages fix security vulnerabilities
SRPMS
- 7/core/jasper-2.0.14-4.1.mga7