stable

openjpeg2-2.2.0-3.fc25

FEDORA-2017-f285db3668 created by smani 7 years ago for Fedora 25

This update fixes CVE-2017-14040, CVE-2017-14041 and two other security vulnerabilities.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2017-f285db3668

This update has been submitted for testing by smani.

7 years ago

This update has been pushed to testing.

7 years ago
User Icon filiperosset commented & provided feedback 7 years ago
karma

no regressions noted

User Icon jonathancalloway commented & provided feedback 7 years ago
karma

no regressions noted.

BZ#1487390 CVE-2017-14151 openjpeg: Heap-based buffer overflow in opj_mqc_flush in mqc.c
BZ#1487389 CVE-2017-14152 openjpeg: Heap-based buffer overflow in opj_write_bytes_LE in cio.c
BZ#1487361 CVE-2017-14040 openjpeg: Invalid write access in bin/jp2/convert.c
BZ#1487347 CVE-2017-14041 openjpeg: Stack-based buffer over-write in pgxtoimage function in bin/jp2/convert.c
BZ#1487394 CVE-2017-14151 CVE-2017-14152 openjpeg2: various flaws [fedora-all]
BZ#1487364 CVE-2017-14040 CVE-2017-14041 openjpeg2: various flaws [fedora-all]

This update has been submitted for stable by smani.

7 years ago

This update has been pushed to stable.

7 years ago

Please login to add feedback.

Metadata
Type
security
Karma
2
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
disabled
Dates
submitted
7 years ago
in testing
7 years ago
in stable
7 years ago
BZ#1487347 CVE-2017-14041 openjpeg: Stack-based buffer over-write in pgxtoimage function in bin/jp2/convert.c
0
1
BZ#1487361 CVE-2017-14040 openjpeg: Invalid write access in bin/jp2/convert.c
0
1
BZ#1487364 CVE-2017-14040 CVE-2017-14041 openjpeg2: various flaws [fedora-all]
0
1
BZ#1487389 CVE-2017-14152 openjpeg: Heap-based buffer overflow in opj_write_bytes_LE in cio.c
0
1
BZ#1487390 CVE-2017-14151 openjpeg: Heap-based buffer overflow in opj_mqc_flush in mqc.c
0
1
BZ#1487394 CVE-2017-14151 CVE-2017-14152 openjpeg2: various flaws [fedora-all]
0
1

Automated Test Results