Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA-202307-02 Normal: Libpng Vulnerability Alert

gentoo
Calendar Grey December 16, 2008
Scroller Gentoo
Several vulnerabilities in the LibTiff library can result in information disclosure when processing malicious TIFF images.
Multiple memory management errors in JasPer might lead to execution of arbitrary code via jpeg2k files.

Summary

Gentoo Linux Security Advisory GLSA 200812-18 https://security.gentoo.org/ Severity: Normal Title: JasPer: User-assisted execution of arbitrary code Date: December 16, 2008 Bugs: #222819 ID: 200812-18

Synopsis ======= Multiple memory management errors in JasPer might lead to execution of arbitrary code via jpeg2k files.
Background ========= The JasPer Project is an open-source initiative to provide a free software-based reference implementation of the codec specified in the JPEG-2000 Part-1 (jpeg2k) standard.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-libs/jasper < 1.900.1-r3 >= 1.900.1-r3
========== Marc Espie and Christian Weisgerber have discovered m...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround