Mageia alert MGASA-2016-0353 (openjpeg)
From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
To: | updates-announce@ml.mageia.org | |
Subject: | [updates-announce] MGASA-2016-0353: Updated openjpeg packages fix security vulnerability | |
Date: | Sun, 23 Oct 2016 10:50:24 +0200 | |
Message-ID: | <20161023085024.0E9ED9F79F@duvel.mageia.org> |
MGASA-2016-0353 - Updated openjpeg packages fix security vulnerability Publication date: 23 Oct 2016 URL: http://advisories.mageia.org/MGASA-2016-0353.html Type: security Affected Mageia releases: 5 CVE: CVE-2016-7445 Description: The openjpeg library was vulnerable to a crash when converting images due to a NULL pointer dereference in read_pnm_header() (CVE-2016-7445). References: - https://bugs.mageia.org/show_bug.cgi?id=19497 - https://lists.opensuse.org/opensuse-updates/2016-09/msg00... - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7445 SRPMS: - 5/core/openjpeg-1.5.2-5.1.mga5