ELSA-2017-0838

ELSA-2017-0838 - openjpeg security update

Type:SECURITY
Severity:MODERATE
Release Date:2017-03-22

Description


[1.5.1-16]
- Revert previous changes in patch for CVE-2016-5159
- Fix memory leaks
Related: #1419772

[1.5.1-15]
- Add two more allocation checks to patch for CVE-2016-5159
Related: #1419772

[1.5.1-14]
- Fix CWE-825 errors in patch for CVE-2016-5158
Related: #1419772

[1.5.1-13]
- Add patches for CVE-2016-5139, CVE-2016-5158, CVE-2016-5159
Related: #1419772

[1.5.1-12]
- Fix patch name: CVE-2016-9675 => CVE-2016-7163
Related: #1419772

[1.5.1-11]
- Fix decoding of chroma-subsampled images
- Add patches for CVE-2016-9573 and CVE-2016-9675
- Fix Coverity issues
Resolves: #1419772


Related CVEs


CVE-2016-5139
CVE-2016-5158
CVE-2016-9675
CVE-2016-5159
CVE-2016-7163
CVE-2016-9573

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) openjpeg-1.5.1-16.el7_3.src.rpm171fff2050734be913e56a31abaed3fbELBA-2017-1870
openjpeg-1.5.1-16.el7_3.x86_64.rpm188e3bcb13b62759d7379ab63e0f755dELBA-2017-1870
openjpeg-devel-1.5.1-16.el7_3.i686.rpmc738102c6454c2c73694b615ca8dc047ELBA-2017-1870
openjpeg-devel-1.5.1-16.el7_3.x86_64.rpm45dd88553a170f1adf27dda8fef96bd4ELBA-2017-1870
openjpeg-libs-1.5.1-16.el7_3.i686.rpma7ddf2cf01058dcd21f5eba53e84ab85ELBA-2017-1870
openjpeg-libs-1.5.1-16.el7_3.x86_64.rpm6a16d17a75713a3d113c6fc8c7a3f257ELBA-2017-1870



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete