SuSE: 2011:1317-2: important: jasper
Summary
SUSE Security Update: Security update for jasper
______________________________________________________________________________
Announcement ID: SUSE-SU-2011:1317-2
Rating: important
References: #725758
Cross-References: CVE-2011-4516 CVE-2011-4517
Affected Products:
SUSE Linux Enterprise Server 10 SP4
SUSE Linux Enterprise Desktop 10 SP4
SLE SDK 10 SP4
______________________________________________________________________________
An update that fixes two vulnerabilities is now available.
Description:
The following bug has been fixed:
* Specially crafted JPEG2000 files could have caused a
heap buffer overflow in jasper (CVE-2011-4516,
CVE-2011-4517)
Security Issues:
* CVE-2011-4516
References