{"id":"CLSA-2026-1778218633","summary":"jasper: Fix of 3 CVEs","details":"- Add Amazon Linux 2 ELS support (mirrors centos7els branch with .amzn2 dist\n  via / leapfrog over stock 1.900.1-33.amzn2.0.1)\n- Import CVE-2020-27828 patch from amzn2 stock SRPM (out-of-bounds write in\n  jpc encoder; jasper-2.0.14-CVE-2020-27828.patch)\n- Import CVE-2021-3443 patch from amzn2 stock SRPM (NULL pointer dereference\n  in JP2 component reference handling)\n- Import CVE-2021-3467 patch from amzn2 stock SRPM (NULL pointer dereference\n  in CDEF box channel reference handling)","modified":"2026-05-27T11:18:28.008891451Z","published":"2026-05-08T05:37:18Z","upstream":["CVE-2020-27828","CVE-2021-3443","CVE-2021-3467"],"references":[{"type":"ADVISORY","url":"https://errata.tuxcare.com/els_os/oraclelinux7els/CLSA-2026-1778218633.html"}],"affected":[{"package":{"name":"jasper","ecosystem":"TuxCare:OracleLinux:7","purl":"pkg:rpm/tuxcare/jasper?distro=oraclelinux-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.900.1-33.el7.tuxcare.els6"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2026-1778218633.json"}},{"package":{"name":"jasper-devel","ecosystem":"TuxCare:OracleLinux:7","purl":"pkg:rpm/tuxcare/jasper-devel?distro=oraclelinux-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.900.1-33.el7.tuxcare.els6"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2026-1778218633.json"}},{"package":{"name":"jasper-libs","ecosystem":"TuxCare:OracleLinux:7","purl":"pkg:rpm/tuxcare/jasper-libs?distro=oraclelinux-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.900.1-33.el7.tuxcare.els6"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2026-1778218633.json"}},{"package":{"name":"jasper-utils","ecosystem":"TuxCare:OracleLinux:7","purl":"pkg:rpm/tuxcare/jasper-utils?distro=oraclelinux-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.900.1-33.el7.tuxcare.els6"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2026-1778218633.json"}}],"schema_version":"1.7.5"}