Revision Date: | 2007-04-25 | Version: | 18 |
Title: | libpng Malformed PNG Image Vulnerability |
Description: | The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message. |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2004-0421
|
Platform(s): | Red Hat Enterprise Linux 3
| Product(s): | |
Definition Synopsis |
Red Hat Enterprise 3 is installed AND ix86 architecture
AND libpng/libpng-devel is less than 1.2.2-21 or libpng10/libpng-devel less than 1.0.13 is installed
libpng version is less than 1.2.2-21
OR libpng-devel version is less than 1.2.2-21
OR libpng10 version is less than 1.0.13-12
OR libpng10-devel version is less than 1.0.13-12
|