[ubuntu/kinetic-security] jbigkit 2.1-3.1ubuntu0.22.10.1 (Accepted)
Camila Camargo de Matos
camila.camargodematos at canonical.com
Thu Nov 24 16:18:33 UTC 2022
jbigkit (2.1-3.1ubuntu0.22.10.1) kinetic-security; urgency=medium
* SECURITY UPDATE: abort when memory allocations fail in jbig.c
- debian/patches/CVE-2017-9937-1.patch: set maximum decoded image size to
2GB.
- debian/patches/CVE-2017-9937-2.patch: check for end-of-file within
MARKER_NEWLEN (jbg_newlen()).
- CVE-2017-9937
Date: 2022-11-23 16:07:12.174756+00:00
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
https://launchpad.net/ubuntu/+source/jbigkit/2.1-3.1ubuntu0.22.10.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the kinetic-changes
mailing list