OVMSA-2017-0048

OVMSA-2017-0048 - openjpeg security update

Type:SECURITY
Impact:MODERATE
Release Date:2017-03-20

Description


[1.3-16]
- Revert previous changes in patch for CVE-2016-5159
- Fix double free in patch for CVE-2016-5139
- Fix memory leaks and invalid read in cio_bytein
Related: #1419775

[1.3-15]
- Add two more allocation checks to patch for CVE-2016-5159
Related: #1419775

[1.3-14]
- Add patches for CVE-2016-5139, CVE-2016-5158, CVE-2016-5159
Related: #1419775

[1.3-13]
- Fix patch name: CVE-2016-9675 => CVE-2016-7163
Related: #1419775

[1.3-12]
- Add patch for CVE-2016-9675
- Fix Coverity issues
Resolves: #1419775


Related CVEs


CVE-2016-5159
CVE-2016-9675
CVE-2016-5139
CVE-2016-5158
CVE-2016-7163

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.3 (x86_64) openjpeg-1.3-16.el6_8.src.rpm8d3ebf1f40604db4bf33b80d4a83389fb9fa4dc212b4e402a32cd226e9846154-ovm3_x86_64_3.3_patch
openjpeg-libs-1.3-16.el6_8.x86_64.rpmd374d3afaebe94c5762e6174643f931fd873cfe778dc9f685099705a411d2b97-ovm3_x86_64_3.3_patch
Oracle VM 3.4 (x86_64) openjpeg-1.3-16.el6_8.src.rpm8d3ebf1f40604db4bf33b80d4a83389fb9fa4dc212b4e402a32cd226e9846154-ovm34_x86_64_latest
openjpeg-libs-1.3-16.el6_8.x86_64.rpmd374d3afaebe94c5762e6174643f931fd873cfe778dc9f685099705a411d2b97-ovm34_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete