[Full-disclosure] [ MDKSA-2007:129 ] - Updated jasper packages fix vulnerability
Ismail Dönmez
ismail at pardus.org.tr
Fri Jun 22 21:27:43 BST 2007
On Friday 22 June 2007 22:10:52 Debasis Mohanty wrote:
> Last month while I was fuzzing an application using Jasper, I got this -
>
> The error message is "Error 500: Request processing failed; nested
> exception is net.sf.jasperreports.engine.JRRuntimeException:
> net.sf.jasperreports.engine.JRException: Error executing SQL statement
> for : FaultEventExceed_FaultsSub1Type1"
This advisory is about jasper2000 JPEG2000 library [0] , not JasperReports.
[0] http://www.ece.uvic.ca/~mdadams/jasper/
/ismail
--
Perfect is the enemy of good
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 827 bytes
Desc: This is a digitally signed message part.
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070622/d31a71d7/attachment.bin
Full-Disclosure is hosted and sponsored by Secunia.