jasper: double free triggered by jasper_image_stop_load function (CVE-2015-5203)
A new double free affecting JasPer JPEG-2000 (libjasper 1.900) has been found triggered by function jasper_image_stop_load.
Reference:
(from redmine: issue id 4557, created on 2015-08-26, closed on 2015-09-21)
- Relations:
- child #4558 (closed)
- child #4559 (closed)
- child #4560 (closed)
- child #4561 (closed)
- Changesets:
- Revision 2b2d458b by Natanael Copa on 2015-09-21T08:37:53Z:
main/jasper: security fix for CVE-2015-5203
ref #4557
- Revision fccc4781 by Natanael Copa on 2015-09-21T09:16:37Z:
main/jasper: security fix for CVE-2015-5203
ref #4557
fixes #4561
- Revision 17601c4c by Natanael Copa on 2015-09-21T09:19:42Z:
main/jasper: security fix for CVE-2015-5203
ref #4557
fixes #4560
- Revision 876243c7 by Natanael Copa on 2015-09-21T09:22:36Z:
main/jasper: security fix for CVE-2015-5203
ref #4557
fixes #4559
- Revision 6ed682fc by Natanael Copa on 2015-09-21T09:26:19Z:
main/jasper: security fix for CVE-2015-5203
ref #4557
fixes #4558