jasper-1.900.1-33.0.1.el7.AXS7
エラータID: AXSA:2024-8730:01
Release date:
Thursday, August 29, 2024 - 14:52
Subject:
jasper-1.900.1-33.0.1.el7.AXS7
Affected Channels:
Asianux Server 7 for x86_64
Severity:
High
Description:
This package contains an implementation of the image compression standard
JPEG-2000, Part 1. It consists of tools for conversion to and from the JP2 and
JPC formats.
Security Fix(es):
* CVE-2023-51257: fix an integer-overflow bug in the ICC profile parsing code
CVE(s):
CVE-2023-51257
An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.
Solution:
Update packages.
CVEs:
CVE-2023-51257
An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.
An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.
Additional Info:
N/A
Download:
Asianux Server 7 for x86_64
- jasper-libs-1.900.1-33.0.1.el7.AXS7.i686.rpm
MD5: b20b24bfc98f5d843f07d4532e6dc439
SHA-256: 22df7d32893812b5bc5014103391471e58af15e17856e1661bf9f4dba8796784
Size: 147.19 kB - jasper-libs-1.900.1-33.0.1.el7.AXS7.x86_64.rpm
MD5: 79050fe28a717d384b8ad666658fae5f
SHA-256: 32358b02ab53faecd5fa8153a336fb1b7936bb271a8144fe8509347ec63d60fa
Size: 149.83 kB