Oval Definition:oval:org.cisecurity:def:440
Revision Date:2016-05-14Version:11
Title:Vulnerability in IBM SDK Java affects AIX
Description:libpng is vulnerable to a buffer overflow, caused by improper bounds checking by the png_get_PLTE() and png_set_PLTE() functions. By persuading a victim to open a specially crafted PNG image, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2015-8472
Platform(s):IBM AIX 6.1
IBM AIX 7.1
Product(s):
Definition Synopsis
  • platforms
  • IBM AIX 6.1 is installed
  • OR IBM AIX 7.1 is installed
  • AND File Version Exists
  • Java6.sdk less than 6.0.0.535
  • OR Java6_64.sdk less than 6.0.0.535
  • OR Java7.sdk less than 7.0.0.320
  • OR Java7_64.sdk less than 7.0.0.320
  • OR Java71.sdk less than 7.1.0.200
  • OR Java71_64.sdk less than 7.1.0.200
  • OR Java8.sdk less than 8.0.0.120
  • OR Java8_64.sdk less than 8.0.0.120
  • BACK