94b862
Bacport of the upstream commit:
94b862
94b862
From 74ea22a7a4fe186e0a0124df25e19739b77c4a29 Mon Sep 17 00:00:00 2001
94b862
From: Richard Hughes <richard@hughsie.com>
94b862
Date: Mon, 19 Sep 2016 10:03:36 +0100
94b862
Subject: [PATCH] CVE-2016-1577
94b862
94b862
diff -pruN jasper-1.900.1.orig/src/libjasper/base/jas_icc.c jasper-1.900.1/src/libjasper/base/jas_icc.c
94b862
--- jasper-1.900.1.orig/src/libjasper/base/jas_icc.c	2017-03-24 13:58:54.000000000 +0100
94b862
+++ jasper-1.900.1/src/libjasper/base/jas_icc.c	2017-03-24 13:59:12.000000000 +0100
94b862
@@ -299,6 +299,7 @@ jas_iccprof_t *jas_iccprof_load(jas_stre
94b862
 				if (jas_iccprof_setattr(prof, tagtabent->tag, attrval))
94b862
 					goto error;
94b862
 				jas_iccattrval_destroy(attrval);
94b862
+				attrval = 0;
94b862
 			} else {
94b862
 #if 0
94b862
 				jas_eprintf("warning: skipping unknown tag type\n");