11 |
|
|
12 |
Name: openjpeg2 |
Name: openjpeg2 |
13 |
Version: 2.2.0 |
Version: 2.2.0 |
14 |
%define subrel 1 |
%define subrel 2 |
15 |
Release: %mkrel 1 |
Release: %mkrel 1 |
16 |
Summary: An open-source JPEG 2000 codec |
Summary: An open-source JPEG 2000 codec |
17 |
License: BSD |
License: BSD |
20 |
Source0: https://github.com/uclouvain/openjpeg/archive/openjpeg-%{version}.tar.gz |
Source0: https://github.com/uclouvain/openjpeg/archive/openjpeg-%{version}.tar.gz |
21 |
Patch0: openjpeg2-remove-thirdparty.patch |
Patch0: openjpeg2-remove-thirdparty.patch |
22 |
# https://blogs.gentoo.org/ago/2017/08/16/openjpeg-heap-based-buffer-overflow-in-opj_write_bytes_le-cio-c/ |
# https://blogs.gentoo.org/ago/2017/08/16/openjpeg-heap-based-buffer-overflow-in-opj_write_bytes_le-cio-c/ |
23 |
|
# CVE-2017-14152 |
24 |
Patch1: 4241ae6fbbf1de9658764a80944dc8108f2b4154.patch |
Patch1: 4241ae6fbbf1de9658764a80944dc8108f2b4154.patch |
25 |
# https://blogs.gentoo.org/ago/2017/08/14/openjpeg-memory-allocation-failure-in-opj_aligned_alloc_n-opj_malloc-c/ |
# https://blogs.gentoo.org/ago/2017/08/14/openjpeg-memory-allocation-failure-in-opj_aligned_alloc_n-opj_malloc-c/ |
26 |
|
# CVE-2017-14151 |
27 |
Patch2: baf0c1ad4572daa89caa3b12985bdd93530f0dd7.patch |
Patch2: baf0c1ad4572daa89caa3b12985bdd93530f0dd7.patch |
28 |
# https://blogs.gentoo.org/ago/2017/08/16/openjpeg-heap-based-buffer-overflow-in-opj_mqc_flush-mqc-c/ |
# https://blogs.gentoo.org/ago/2017/08/16/openjpeg-heap-based-buffer-overflow-in-opj_mqc_flush-mqc-c/ |
29 |
Patch3: afb308b9ccbe129608c9205cf3bb39bbefad90b9.patch |
Patch3: afb308b9ccbe129608c9205cf3bb39bbefad90b9.patch |
30 |
|
# CVE-2017-14041 |
31 |
|
Patch4: e5285319229a5d77bf316bb0d3a6cbd3cb8666d9.patch |
32 |
|
# CVE-2017-14040 |
33 |
|
Patch5: 2cd30c2b06ce332dede81cccad8b334cde997281.patch |
34 |
|
# CVE-2017-14039 and CVE-2017-14164 |
35 |
|
Patch6: openjpeg2-CVE-2017-14039.patch |
36 |
BuildRequires: png-devel |
BuildRequires: png-devel |
37 |
BuildRequires: tiff-devel |
BuildRequires: tiff-devel |
38 |
BuildRequires: lcms2-devel |
BuildRequires: lcms2-devel |