Fedora 20 Security Update: jasper-1.900.1-28.fc20

Resolved Bugs
1184750 – CVE-2014-8157 CVE-2014-8158 jasper: various flaws [fedora-all]
1179282 – CVE-2014-8157 jasper: dec->numtiles off-by-one check in jpc_dec_process_sot() (oCERT-2015-001)
1179298 – CVE-2014-8158 jasper: unrestricted stack memory use in jpc_qmfb.c (oCERT-2015-001)<br
This update fixes two security flaws in jasper.

Leave a Reply