-
Thu Jun 21 2018 Josef Ridky <jridky@redhat.com> - 1.900.1-33
- remove implicit declaration of jas_eprintf (#1585830)
-
Thu Jun 21 2018 Josef Ridky <jridky@redhat.com> - 1.900.1-32
- Fix CVE-2016-9396 (#1583721)
- Fix CVE-2017-1000050 (#1585830)
-
Wed May 31 2017 Josef Ridky <jridky@redhat.com> - 1.900.1-31
- Fix missing declaration of SIZE_MAX constant in jas_math.h (#1455489)
-
Tue Apr 25 2017 Josef Ridky <jridky@redhat.com> - 1.900.1-30
- Multiple security fixes (fixed by thoger):
CVE-2015-5203 CVE-2015-5221 CVE-2016-1577 CVE-2016-1867 CVE-2016-2089
CVE-2016-2116 CVE-2016-8654 CVE-2016-8690 CVE-2016-8691 CVE-2016-8692
CVE-2016-8693 CVE-2016-8883 CVE-2016-8884 CVE-2016-8885 CVE-2016-9262
CVE-2016-9387 CVE-2016-9388 CVE-2016-9389 CVE-2016-9390 CVE-2016-9391
CVE-2016-9392 CVE-2016-9393 CVE-2016-9394 CVE-2016-9560 CVE-2016-9583
CVE-2016-9591 CVE-2016-9600 CVE-2016-10248 CVE-2016-10249 CVE-2016-10251
- Fix implicit declaration warning caused by security fixes above
-
Mon Jan 19 2015 Jiri Popelka <jpopelka@redhat.com> - 1.900.1-29
- CVE-2014-8157 - dec->numtiles off-by-one check in jpc_dec_process_sot() (#1183674)
- CVE-2014-8158 - unrestricted stack memory use in jpc_qmfb.c (#1183682)
-
Fri Dec 12 2014 Jiri Popelka <jpopelka@redhat.com> - 1.900.1-28
- CVE-2014-8137 - double-free in in jas_iccattrval_destroy (#1173569)
- CVE-2014-8138 - heap overflow in jp2_decode (#1173569)
-
Sat Dec 06 2014 Jiri Popelka <jpopelka@redhat.com> - 1.900.1-27
- CVE-2014-9029 - incorrect component number check in COC, RGN and QCC
marker segment decoders (#1171211)
-
Fri Jan 24 2014 Daniel Mach <dmach@redhat.com> - 1.900.1-26
- Mass rebuild 2014-01-24
-
Fri Dec 27 2013 Daniel Mach <dmach@redhat.com> - 1.900.1-25
- Mass rebuild 2013-12-27
-
Mon Mar 25 2013 Jiri Popelka <jpopelka@redhat.com> - 1.900.1-24
- added --force option to autoreconf (#925604)