Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2017.0474
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2017-0474)
Summary:The remote host is missing an update for the 'jasper' package(s) announced via the MGASA-2017-0474 advisory.
Description:Summary:
The remote host is missing an update for the 'jasper' package(s) announced via the MGASA-2017-0474 advisory.

Vulnerability Insight:
The jasper package has been updated and patched to fix several security
issues.

Affected Software/OS:
'jasper' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-10248
BugTraq ID: 93797
http://www.securityfocus.com/bid/93797
https://blogs.gentoo.org/ago/2016/10/20/jasper-null-pointer-dereference-in-jpc_tsfb_synthesize-jpc_tsfb-c/
RedHat Security Advisories: RHSA-2017:1208
https://access.redhat.com/errata/RHSA-2017:1208
https://usn.ubuntu.com/3693-1/
Common Vulnerability Exposure (CVE) ID: CVE-2016-10249
BugTraq ID: 93838
http://www.securityfocus.com/bid/93838
Debian Security Information: DSA-3827 (Google Search)
http://www.debian.org/security/2017/dsa-3827
https://blogs.gentoo.org/ago/2016/10/23/jasper-heap-based-buffer-overflow-in-jpc_dec_tiledecode-jpc_dec-c/
Common Vulnerability Exposure (CVE) ID: CVE-2016-10250
https://blogs.gentoo.org/ago/2016/10/23/jasper-null-pointer-dereference-in-jp2_colr_destroy-jp2_cod-c-incomplete-fix-for-cve-2016-8887/
Common Vulnerability Exposure (CVE) ID: CVE-2016-10251
BugTraq ID: 97584
http://www.securityfocus.com/bid/97584
https://blogs.gentoo.org/ago/2016/11/04/jasper-use-of-uninitialized-value-in-jpc_pi_nextcprl-jpc_t2cod-c/
https://www.oracle.com/security-alerts/cpuapr2020.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-8654
BugTraq ID: 94583
http://www.securityfocus.com/bid/94583
Debian Security Information: DSA-3785 (Google Search)
https://www.debian.org/security/2017/dsa-3785
Common Vulnerability Exposure (CVE) ID: CVE-2016-8690
BugTraq ID: 93590
http://www.securityfocus.com/bid/93590
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/22FCKKHQCQ3S6TZY5G44EFDTMWOJXJRD/
https://blogs.gentoo.org/ago/2016/10/16/jasper-two-null-pointer-dereference-in-bmp_getdata-bmp_dec-c/
https://lists.debian.org/debian-lts-announce/2018/11/msg00023.html
http://www.openwall.com/lists/oss-security/2016/08/23/6
http://www.openwall.com/lists/oss-security/2016/10/16/14
Common Vulnerability Exposure (CVE) ID: CVE-2016-8691
BugTraq ID: 93593
http://www.securityfocus.com/bid/93593
http://www.debian.org/security/2017/dsa-3785
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/THLEZURI4D24PRM7SMASC5I25IAWXXTM/
https://blogs.gentoo.org/ago/2016/10/16/jasper-two-divide-by-zero-in-jpc_dec_process_siz-jpc_dec-c/
Common Vulnerability Exposure (CVE) ID: CVE-2016-8692
BugTraq ID: 93588
http://www.securityfocus.com/bid/93588
Common Vulnerability Exposure (CVE) ID: CVE-2016-8693
BugTraq ID: 93587
http://www.securityfocus.com/bid/93587
https://blogs.gentoo.org/ago/2016/10/16/jasper-double-free-in-mem_close-jas_stream-c/
SuSE Security Announcement: openSUSE-SU-2016:2722 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-11/msg00010.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-8751
BugTraq ID: 99067
http://www.securityfocus.com/bid/99067
Common Vulnerability Exposure (CVE) ID: CVE-2016-8880
Common Vulnerability Exposure (CVE) ID: CVE-2016-8881
Common Vulnerability Exposure (CVE) ID: CVE-2016-8882
BugTraq ID: 95864
http://www.securityfocus.com/bid/95864
http://www.openwall.com/lists/oss-security/2016/10/17/1
http://www.openwall.com/lists/oss-security/2016/10/23/8
Common Vulnerability Exposure (CVE) ID: CVE-2016-8883
BugTraq ID: 95865
http://www.securityfocus.com/bid/95865
Common Vulnerability Exposure (CVE) ID: CVE-2016-8884
BugTraq ID: 93834
http://www.securityfocus.com/bid/93834
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EGI2FZQLOTSZI3VA4ECJERI74SMNQDL4/
https://blogs.gentoo.org/ago/2016/10/18/jasper-two-null-pointer-dereference-in-bmp_getdata-bmp_dec-c-incomplete-fix-for-cve-2016-8690/
http://www.openwall.com/lists/oss-security/2016/10/23/1
http://www.openwall.com/lists/oss-security/2016/10/23/9
Common Vulnerability Exposure (CVE) ID: CVE-2016-8885
https://blogs.gentoo.org/ago/2016/10/18/jasper-two-null-pointer-dereference-in-bmp_getdata-bmp_dec-c-incomplete-fix-for-cve-2016-8690
http://www.openwall.com/lists/oss-security/2016/10/23/5
Common Vulnerability Exposure (CVE) ID: CVE-2016-8886
BugTraq ID: 93839
http://www.securityfocus.com/bid/93839
https://blogs.gentoo.org/ago/2016/10/18/jasper-memory-allocation-failure-in-jas_malloc-jas_malloc-c
http://www.openwall.com/lists/oss-security/2016/10/23/2
http://www.openwall.com/lists/oss-security/2016/10/25/11
Common Vulnerability Exposure (CVE) ID: CVE-2016-8887
BugTraq ID: 93835
http://www.securityfocus.com/bid/93835
https://blogs.gentoo.org/ago/2016/10/18/jasper-null-pointer-dereference-in-jp2_colr_destroy-jp2_cod-c
http://www.openwall.com/lists/oss-security/2016/10/23/3
http://www.openwall.com/lists/oss-security/2016/10/23/6
Common Vulnerability Exposure (CVE) ID: CVE-2016-9262
BugTraq ID: 94224
http://www.securityfocus.com/bid/94224
https://security.gentoo.org/glsa/201707-07
https://blogs.gentoo.org/ago/2016/11/07/jasper-use-after-free-in-jas_realloc-jas_malloc-c
http://www.openwall.com/lists/oss-security/2016/11/10/4
Common Vulnerability Exposure (CVE) ID: CVE-2016-9387
BugTraq ID: 94374
http://www.securityfocus.com/bid/94374
https://blogs.gentoo.org/ago/2016/11/16/jasper-multiple-assertion-failure
http://www.openwall.com/lists/oss-security/2016/11/17/1
Common Vulnerability Exposure (CVE) ID: CVE-2016-9388
BugTraq ID: 94371
http://www.securityfocus.com/bid/94371
Common Vulnerability Exposure (CVE) ID: CVE-2016-9389
Common Vulnerability Exposure (CVE) ID: CVE-2016-9390
Common Vulnerability Exposure (CVE) ID: CVE-2016-9391
Common Vulnerability Exposure (CVE) ID: CVE-2016-9392
BugTraq ID: 94377
http://www.securityfocus.com/bid/94377
Common Vulnerability Exposure (CVE) ID: CVE-2016-9393
Common Vulnerability Exposure (CVE) ID: CVE-2016-9394
BugTraq ID: 94372
http://www.securityfocus.com/bid/94372
Common Vulnerability Exposure (CVE) ID: CVE-2016-9395
BugTraq ID: 94376
http://www.securityfocus.com/bid/94376
SuSE Security Announcement: SUSE-SU-2017:0084 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00008.html
SuSE Security Announcement: openSUSE-SU-2017:0101 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00009.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-9396
BugTraq ID: 94379
http://www.securityfocus.com/bid/94379
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/N4ALB4SXHURLVWKAOKYRNJXPABW3M22M/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UPOVZTSIQPW2H4AFLMI3LHJEZGBVEQET/
https://bugzilla.redhat.com/show_bug.cgi?id=1485272
RedHat Security Advisories: RHSA-2018:3253
https://access.redhat.com/errata/RHSA-2018:3253
RedHat Security Advisories: RHSA-2018:3505
https://access.redhat.com/errata/RHSA-2018:3505
SuSE Security Announcement: openSUSE-SU-2019:1315 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00004.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-9397
BugTraq ID: 94373
http://www.securityfocus.com/bid/94373
Common Vulnerability Exposure (CVE) ID: CVE-2016-9398
BugTraq ID: 94382
http://www.securityfocus.com/bid/94382
SuSE Security Announcement: openSUSE-SU-2020:1517 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00082.html
SuSE Security Announcement: openSUSE-SU-2020:1523 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00085.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-9399
BugTraq ID: 94380
http://www.securityfocus.com/bid/94380
Common Vulnerability Exposure (CVE) ID: CVE-2016-9557
BugTraq ID: 94490
http://www.securityfocus.com/bid/94490
https://blogs.gentoo.org/ago/2016/11/19/jasper-signed-integer-overflow-in-jas_image-c
http://www.openwall.com/lists/oss-security/2016/11/23/2
Common Vulnerability Exposure (CVE) ID: CVE-2016-9560
BugTraq ID: 94428
http://www.securityfocus.com/bid/94428
https://blogs.gentoo.org/ago/2016/11/20/jasper-stack-based-buffer-overflow-in-jpc_tsfb_getbands2-jpc_tsfb-c/
https://github.com/Hack-Me/Pocs_for_Multi_Versions/tree/main/CVE-2016-9560
http://www.openwall.com/lists/oss-security/2016/11/20/1
http://www.openwall.com/lists/oss-security/2016/11/23/5
Common Vulnerability Exposure (CVE) ID: CVE-2016-9583
BugTraq ID: 94925
http://www.securityfocus.com/bid/94925
Common Vulnerability Exposure (CVE) ID: CVE-2016-9591
BugTraq ID: 94952
http://www.securityfocus.com/bid/94952
https://www.debian.org/security/2017/dsa-3827
Common Vulnerability Exposure (CVE) ID: CVE-2016-9600
Common Vulnerability Exposure (CVE) ID: CVE-2017-1000050
BugTraq ID: 96595
http://www.securityfocus.com/bid/96595
https://security.gentoo.org/glsa/201908-03
http://www.openwall.com/lists/oss-security/2017/03/06/1
Common Vulnerability Exposure (CVE) ID: CVE-2017-6850
https://blogs.gentoo.org/ago/2017/01/25/jasper-null-pointer-dereference-in-jp2_cdef_destroy-jp2_cod-c/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.