[Bug 202697] [PATCH] graphics/jasper: Double free corruption in JasPer JPEG-2000 implementation (CVE-2015-5203)

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Thu Aug 27 17:11:56 UTC 2015


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=202697

            Bug ID: 202697
           Summary: [PATCH] graphics/jasper: Double free corruption in
                    JasPer JPEG-2000 implementation (CVE-2015-5203)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Keywords: patch
          Severity: Affects Many People
          Priority: ---
         Component: Individual Port(s)
          Assignee: dinoex at FreeBSD.org
          Reporter: wxl at bikefriday.com
          Assignee: dinoex at FreeBSD.org
          Keywords: patch
             Flags: maintainer-feedback?(dinoex at FreeBSD.org)

Created attachment 160418
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=160418&action=edit
patch for CVE-2015-5203

We have had a VuXML entry for over a week with no solution:
http://vuxml.freebsd.org/freebsd/f1692469-45ce-11e5-adde-14dae9d210b8.html

There is now a patch available for ½ of the described problem, so I submit it
here with hopes of expediting the process of getting it fixed.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list