Back to bug 1388828
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Adam Mariš | 2016-10-26 10:48:46 UTC | Blocks | 1388871 | |
| Adam Mariš | 2016-10-26 10:49:41 UTC | Depends On | 1388873 | |
| Adam Mariš | 2016-10-26 10:49:51 UTC | Depends On | 1388874 | |
| Adam Mariš | 2016-10-26 10:50:00 UTC | Depends On | 1388875 | |
| Adam Mariš | 2016-10-26 10:50:10 UTC | Depends On | 1388876 | |
| Adam Mariš | 2016-10-26 13:01:28 UTC | Fixed In Version | jasper 1.900.14, jasper 1.900.13, jasper 1.900.12, jasper 1.900.11, jasper 1.900.10 | jasper 1.900.10 |
| Tomas Hoger | 2016-11-29 09:39:38 UTC | Blocks | 1388871 | |
| Tomas Hoger | 2016-11-29 09:42:43 UTC | Blocks | 1314477 | |
| Tomas Hoger | 2016-12-12 13:25:13 UTC | Priority | low | medium |
| Summary | CVE-2016-8887 jasper: Null pointer dereference in jp2_colr_destroy | CVE-2016-8887 jasper: uninitialized pointer use in jp2_box_get() | ||
| Whiteboard | impact=low,public=20161018,reported=20161018,source=oss-security,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=4.0/CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-476,rhel-5/netpbm=new,rhel-6/jasper=new,rhel-7/jasper=new,openshift-enterprise-2/jasper=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/jasper=affected,fedora-all/mingw-jasper=affected,epel-5/jasper=affected,epel-7/mingw-jasper=affected | impact=moderate,public=20161018,reported=20161018,source=oss-security,cvss2=5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P,cvss3=7.0/CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H,cwe=CWE-456,rhel-5/netpbm=notaffected,rhel-6/jasper=notaffected,rhel-7/jasper=notaffected,rhev-m-3/mingw-virt-viewer=notaffected,fedora-all/jasper=affected,fedora-all/mingw-jasper=affected,epel-5/jasper=affected,epel-7/mingw-jasper=affected | ||
| Severity | low | medium | ||
| Tomas Hoger | 2016-12-12 13:31:55 UTC | Fixed In Version | jasper 1.900.10 | jasper 1.900.13 |
| Tomas Hoger | 2016-12-12 14:06:55 UTC | Status | NEW | CLOSED |
| Resolution | --- | NOTABUG | ||
| Whiteboard | impact=moderate,public=20161018,reported=20161018,source=oss-security,cvss2=5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P,cvss3=7.0/CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H,cwe=CWE-456,rhel-5/netpbm=notaffected,rhel-6/jasper=notaffected,rhel-7/jasper=notaffected,rhev-m-3/mingw-virt-viewer=notaffected,fedora-all/jasper=affected,fedora-all/mingw-jasper=affected,epel-5/jasper=affected,epel-7/mingw-jasper=affected | impact=moderate,public=20161018,reported=20161018,source=oss-security,cvss2=5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P,cvss3=7.0/CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H,cwe=CWE-456,rhel-5/netpbm=notaffected,rhel-6/jasper=notaffected,rhel-7/jasper=notaffected,rhev-m-3/mingw-virt-viewer=notaffected,fedora-all/jasper=notaffected,fedora-all/mingw-jasper=notaffected,epel-5/jasper=notaffected,epel-7/mingw-jasper=notaffected | ||
| Last Closed | 2016-12-12 09:06:55 UTC | |||
| Tomas Hoger | 2017-03-16 13:32:47 UTC | Fixed In Version | jasper 1.900.13 | jasper 1.900.10 |
| Slawomir Czarko | 2017-03-16 15:43:27 UTC | CC | slawomir | |
| Product Security DevOps Team | 2019-09-29 13:58:49 UTC | Whiteboard | impact=moderate,public=20161018,reported=20161018,source=oss-security,cvss2=5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P,cvss3=7.0/CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H,cwe=CWE-456,rhel-5/netpbm=notaffected,rhel-6/jasper=notaffected,rhel-7/jasper=notaffected,rhev-m-3/mingw-virt-viewer=notaffected,fedora-all/jasper=notaffected,fedora-all/mingw-jasper=notaffected,epel-5/jasper=notaffected,epel-7/mingw-jasper=notaffected |
Back to bug 1388828