Oval Definition:
oval:org.mitre.oval:def:971
Revision Date
:
2007-04-25
Version
:
18
Title
:
libpng Malformed PNG Image Vulnerability
Description
:
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-0421
Platform(s)
:
Red Hat Enterprise Linux 3
Product(s)
:
Definition Synopsis
Red Hat Enterprise 3 is installed
AND
ix86 architecture
AND
libpng/libpng-devel is less than 1.2.2-21 or libpng10/libpng-devel less than 1.0.13 is installed
libpng version is less than 1.2.2-21
OR
libpng-devel version is less than 1.2.2-21
OR
libpng10 version is less than 1.0.13-12
OR
libpng10-devel version is less than 1.0.13-12
BACK