Hide Forgot
An integer overflow in jas_matrix_create resulting into OOB heap read in jpc_dec_tiledecode was found. Upstream patch: https://github.com/mdadams/jasper/commit/988f8365f7d8ad8073b6786e433d34c553ecf568 Published on oss-sec: http://seclists.org/oss-sec/2017/q1/607 Reference: https://blogs.gentoo.org/ago/2016/10/23/jasper-heap-based-buffer-overflow-in-jpc_dec_tiledecode-jpc_dec-c/
Created jasper tracking bugs for this issue: Affects: epel-5 [bug 1434466] Created mingw-jasper tracking bugs for this issue: Affects: fedora-all [bug 1434467]
This issue was previously reported in bug 1388840.
*** This bug has been marked as a duplicate of bug 1388840 ***
Created jasper tracking bugs for this issue: Affects: fedora-all [bug 1434464] Created mingw-jasper tracking bugs for this issue: Affects: epel-7 [bug 1434465]