[CLSA-2025:1760026282] jasper: Fix of CVE-2025-8837
Type:
security
Severity:
Important
Release date:
2025-10-09 16:11:26 UTC
Description:
- CVE-2025-8837: fix use-after-free vulnerability in jpc_dec_dump()
Updated packages:
  • jasper-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:6c1d9b0029817dbde0909fb00f86dc439104f0cf555ec646f284bb3cc9448cad
  • jasper-devel-1.900.1-33.el7.tuxcare.els2.i686.rpm
    sha:a22e5540fbac95bf8cb2143b1ef1768246b203c905a74d6e5fe636824f74c4fb
  • jasper-devel-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:b3430fe53e988d112671df0c53ab15ee5326344b8fed5d320e2ef12213f4742f
  • jasper-libs-1.900.1-33.el7.tuxcare.els2.i686.rpm
    sha:d89b23a84ba8c2e3347feaf613353712de459672c8dd760ae3c38d6e500fbc47
  • jasper-libs-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:cd851da6263995f8af49f4dae251f1fba3509818e8ce6c2ca37d38444b4db97b
  • jasper-utils-1.900.1-33.el7.tuxcare.els2.x86_64.rpm
    sha:02427c0beb07567faa3a48d297d30b23ed3865c4375fb6fe1288700a2db7f54c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.