[CLSA-2025:1765378381] jasper: Fix of CVE-2025-8836
Type:
security
Severity:
Important
Release date:
2025-12-10 14:53:05 UTC
Description:
- CVE-2025-8836: fix manipulation in function jpc_floorlog2 to prevent reachable assertion
Updated packages:
  • jasper-2.0.28-3.el9.tuxcare.els4.x86_64.rpm
    sha:df50459b8fcb49c3caa34b1ba0fd3db61bd25779109ce832a1829ca8ab667592
  • jasper-devel-2.0.28-3.el9.tuxcare.els4.i686.rpm
    sha:f3ae8ae7ca639926ebcf630b80f2f67d35f8050c06be83661272f1e1df5f65bb
  • jasper-devel-2.0.28-3.el9.tuxcare.els4.x86_64.rpm
    sha:639f60b35d00d054ae586db35f7f4e5215c97dfd43ee2e0736c45309925c515a
  • jasper-libs-2.0.28-3.el9.tuxcare.els4.i686.rpm
    sha:fc1c10831fd97a7000d3da6740433e8081939b2041df24b61026e5eca497b71a
  • jasper-libs-2.0.28-3.el9.tuxcare.els4.x86_64.rpm
    sha:e3fb925a2e68395b6d620e124b82d33bab1f0ee115395a9e31afee7818554e48
  • jasper-utils-2.0.28-3.el9.tuxcare.els4.x86_64.rpm
    sha:e206ff48c8347dc9eac652922bf3655615837aa719b5ff2841f6a0e7e5de60d2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.