lp://staging/ubuntu/gutsy-updates/jasper
- Get this branch:
- bzr branch lp://staging/ubuntu/gutsy-updates/jasper
Branch merges
Branch information
Recent revisions
- 5. By Marc Deslauriers
-
* SECURITY UPDATE: integer overflows via integer multiplication for
memory allocation
- src/libjasper/include/ jasper/ jas_malloc. h,
src/libjasper/ base/jas_ malloc. c:
* introduce new size-checked allocation functions
- src/libjasper/base/jas_ *.c,
src/libjasper/ bmp/bmp_ dec.c,
src/libjasper/ jp2/jp2_ *.c,
src/libjasper/ jpc/jpc_ *.c,
src/libjasper/ mif/mif_ cod.c:
* use new size-checked allocation functions
- CVE-2008-3520
* SECURITY UPDATE: denial of service via temporary file name prediction
- src/libjasper/base/jas_ stream. c: use mkstemp()
- CVE-2008-3521
* SECURITY UPDATE: buffer overflow via vsprintf in jas_stream_printf()
- src/libjasper/base/jas_ stream. c: use vsnprintf()
- CVE-2008-3522 - 3. By Roland Stigge <email address hidden>
-
* Prevent compression of pdf documents in binary packages
* Added man pages for the executables (Closes: #250077)
* Again renamed binary packages to reflect Policy:
- libjasper-1.701-1
- libjasper-1.701-dev (Provides, Replaces and Conflicts: libjasper-dev)
- libjasper-runtime
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)
- Stacked on:
- lp://staging/ubuntu/karmic/jasper