[CLSA-2025:1759498325] jasper: Fix of CVE-2025-8837
Type:
security
Severity:
Important
Release date:
2025-10-03 13:32:12 UTC
Description:
- CVE-2025-8837: fix use after free vulnerability in jpc_dec_dump function
Updated packages:
  • jasper-2.0.28-3.el9.tuxcare.els2.x86_64.rpm
    sha:86daba8547d8aa95e2912c33fd1d02682810f3dab7e3a39f479ae807ea2b1152
  • jasper-devel-2.0.28-3.el9.tuxcare.els2.i686.rpm
    sha:a84edd2134484c2e4adcfb8c116ae3de69566f6ecb922d469a0ad51ef5825780
  • jasper-devel-2.0.28-3.el9.tuxcare.els2.x86_64.rpm
    sha:3530f543c8d1fda65ea9150517373382aab74fbba5feadd6afa1aa1219ee2f38
  • jasper-libs-2.0.28-3.el9.tuxcare.els2.i686.rpm
    sha:5604be3071a1bac98ca94b0e2d1661a545ee38d97443bbd3efdb97708d56cd65
  • jasper-libs-2.0.28-3.el9.tuxcare.els2.x86_64.rpm
    sha:b0f63736ea581a4157de96192a7c659ceb6adb0c0eb14d0a447949535551eb07
  • jasper-utils-2.0.28-3.el9.tuxcare.els2.x86_64.rpm
    sha:693401d55ee017863e71c5653c0062d6e5a59f48fe64c787d1d7e6e2c7991069
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.