Packages
- jasper - Library for manipulating JPEG-2000 files
Details
It was discovered that JasPer incorrectly handled certain malformed
JPEG-2000 image files. If a user or automated system using JasPer were
tricked into opening a specially crafted image, an attacker could exploit
this to cause a denial of service or possibly execute code with the
privileges of the user invoking the program.
It was discovered that JasPer incorrectly handled certain malformed
JPEG-2000 image files. If a user or automated system using JasPer were
tricked into opening a specially crafted image, an attacker could exploit
this to cause a denial of service or possibly execute code with the
privileges of the user invoking the program.
Update instructions
In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
16.04 xenial | libjasper1 – 1.900.1-debian1-2.4ubuntu1.2 | ||
14.04 trusty | libjasper1 – 1.900.1-14ubuntu3.5 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.
References
- CVE-2017-6850
- CVE-2017-1000050
- CVE-2016-9600
- CVE-2016-9396
- CVE-2016-9394
- CVE-2016-9393
- CVE-2016-9392
- CVE-2016-9391
- CVE-2016-9390
- CVE-2016-9389
- CVE-2017-6850
- CVE-2017-1000050
- CVE-2016-9600
- CVE-2016-9396
- CVE-2016-9394
- CVE-2016-9393
- CVE-2016-9392
- CVE-2016-9391
- CVE-2016-9390
- CVE-2016-9389
- CVE-2016-9388
- CVE-2016-9387
- CVE-2016-9262
- CVE-2016-8887
- CVE-2016-8883
- CVE-2016-10250
- CVE-2016-10248
- CVE-2015-5221
- CVE-2015-5203