[CLSA-2025:1759864646] jasper: Fix of CVE-2025-8837
Type:
security
Severity:
Important
Release date:
2025-10-07 19:29:54 UTC
Description:
- CVE-2025-8837: fix use-after-free vulnerability in jpc_dec_dump()
Updated packages:
  • jasper-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:94af35b102d5ef0225a220741ba761b6a2d9a22a5ecf5f784da3a5fd08897a93
  • jasper-devel-1.900.1-33.el7.tuxcare.els2.i686.rpm
    sha:2fffc41b049b292349b679f8cf14726fb4302b651fce6ff3d5698e0e63ff166a
  • jasper-devel-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:ad68b5fc72ae28bec03f04c4ef8ae57cadff5fa6565a0c5ff5a915af8ee34d75
  • jasper-libs-1.900.1-33.el7.tuxcare.els2.i686.rpm
    sha:bf1f5ed8defd3b72ded2e931b78f37a516a5ce7f21e1751a5c76fe627cace7d5
  • jasper-libs-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:fa05dd3d899c60cc1aab7bd5d82c97e2d9cf94b55a9fd7789ae68164d9b1d260
  • jasper-utils-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:68b8dd854b775283d61d6bb7071969032d67ef726869729d03d5140461b39aec
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.