[Buildroot] [PATCH] jasper: add security fixes for CVE-2014-8157/8158

Peter Korsgaard peter at korsgaard.com
Mon Jan 26 22:03:04 UTC 2015


>>>>> "Gustavo" == Gustavo Zacarias <gustavo at zacarias.com.ar> writes:

 > Fixes:
 > CVE-2014-8157 - dec->numtiles off-by-one check in jpc_dec_process_sot()
 > CVE-2014-8158 - unrestricted stack memory use in jpc_qmfb.c

 > Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>

Committed, thanks.

-- 
Bye, Peter Korsgaard


More information about the buildroot mailing list