Bug 12685 - libopenjpeg: CVE-2012-3535
: libopenjpeg: CVE-2012-3535
Status: NEW
Product: Maemo 5 Community SSU
general
: testing
: N900 Maemo
: Unspecified major (vote)
: ---
Assigned To: unassigned
: general
:
:
:
:
  Show dependency tree
 
Reported: 2013-02-06 20:41 UTC by Andre Klapper
Modified: 2013-02-06 20:41 UTC (History)
0 users (show)

See Also:


Attachments


Note

You need to log in before you can comment on or make changes to this bug.


Description Andre Klapper (reporter) maemo.org 2013-02-06 20:41:04 UTC
There's 1.3+dfsg-4 in extras-devel.
http://maemo.org/packages/view/libopenjpeg2/ has no maintainers listed, meh, so
not sure under which product to file this.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3535

Latest CSSU Testing ships 
* libopenjpeg2 1.3+dfsg-4

https://security-tracker.debian.org/tracker/CVE-2012-3535 states:
               1.3+dfsg-4 vulnerable

Upstream patches:
http://code.google.com/p/openjpeg/source/detail?r=1918
http://code.google.com/p/openjpeg/source/detail?r=1919