    openjpeg2 (2.1.0-2+deb8u4) jessie-security; urgency=high
      * Non-maintainer upload by the LTS Team. 
      * CVE-2015-1239
        Fix for denial of service (process crash) via a crafted PDF.
      * CVE-2016-5139
        Fix for integer overflows, allowing a denial of service
        (heap-based buffer overflow) or possibly have unspecified
        other impact via crafted JPEG 2000 data.
