MGASA-2019-0381

Source
https://advisories.mageia.org/MGASA-2019-0381.html
Import Source
https://advisories.mageia.org/MGASA-2019-0381.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2019-0381
Related
Published
2019-12-13T18:25:24Z
Modified
2019-12-13T18:00:13Z
Summary
Updated jasper packages fix security vulnerabilities
Details

Heap based overflow in jasicctxtdescinput (CVE-2018-19540).

Heap based overread in jasimagedepalettize (CVE-2018-19541).

References
Credits

Affected packages

Mageia:7 / jasper

Package

Name
jasper
Purl
pkg:rpm/mageia/jasper?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.0.14-4.1.mga7

Ecosystem specific

{
    "section": "core"
}