Errata overview
Errata ID 357
Date 2015-08-21
Source package jasper
Fixed in version 1.900.1-7.26.201508181100
Description
Multiple vulnerabilities have been fixed in the jasper library:
* Two buffer overflows in the processing of JPEG-2000 images may result
  in the execution of arbitrary code (CVE-2014-9029)
* Buffer overflow and double free in processing JPEG2000 images
  (CVE-2014-8137, CVE-2014-8138)
* Off-by-one and buffer overflows in processing JPEG2000 images
  (CVE-2014-8157, CVE-2014-8158)
Additional notes
CVE ID CVE-2014-9029
CVE-2014-8137
CVE-2014-8138
CVE-2014-8157
CVE-2014-8158
UCS Bug number #37209