Oval Definition:oval:org.opensuse.security:def:20100205
Revision Date:2022-05-20Version:1
Title:CVE-2010-0205
Description:

The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which allows remote attackers to cause a denial of service (memory and CPU consumption, and application hang) via a crafted PNG file, as demonstrated by use of the deflate compression method on data composed of many occurrences of the same character, related to a "decompression bomb" attack.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2010-0205
Mitre CVE-2010-0205
SUSE CVE-2010-0205
SUSE-SR:2010:011
SUSE-SR:2010:011
SUSE-SR:2010:012
SUSE-SR:2010:012
SUSE-SR:2010:013
SUSE-SR:2010:013
Platform(s):Open Enterprise Server
openSUSE 11.0
openSUSE 11.1
openSUSE 11.2
SUSE CORE 9 for AMD64 and Intel EM64T
SUSE Linux Enterprise 11 Moblin 2.0
SUSE Linux Enterprise 11 Moblin 2.1
SUSE Linux Enterprise Desktop 10 SP3 for AMD64 and Intel EM64T
SUSE Linux Enterprise Desktop 10 SP3 for x86
SUSE Linux Enterprise Desktop 11 GA
SUSE Linux Enterprise Desktop 11 SP1
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise SDK 10 SP3
SUSE Linux Enterprise SDK 11 GA
SUSE Linux Enterprise Server 10 SP3
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 GA
SUSE Linux Enterprise Server 11 SP1
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP 10 SP3
SUSE Linux Enterprise Server for SAP Applications 11
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND Package Information
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.13.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • libpng12-0-1.2.31-5.31 is installed
  • OR libpng12-0-32bit-1.2.31-5.31 is installed
  • OR libpng12-0-x86-1.2.31-5.31 is installed
  • Definition Synopsis
  • Release Information
  • sles10-sp3 is installed
  • AND
  • libpng-32bit less than 1.2.8-19.28.1
  • OR libpng-64bit less than 1.2.8-19.28.1
  • OR libpng-devel-32bit less than 1.2.8-19.28.1
  • OR libpng-devel-64bit less than 1.2.8-19.28.1
  • OR libpng-devel less than 1.2.8-19.28.1
  • OR libpng-x86 less than 1.2.8-19.28.1
  • OR libpng less than 1.2.8-19.28.1
  • OR Package Information
  • sles10-sp3-sap is installed
  • AND
  • libpng-32bit less than 1.2.8-19.28.1
  • OR libpng-devel-32bit less than 1.2.8-19.28.1
  • OR libpng-devel less than 1.2.8-19.28.1
  • OR libpng less than 1.2.8-19.28.1
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13 is installed
  • OR libpng12-0-32bit-1.2.31-5.13 is installed
  • OR libpng12-0-x86-1.2.31-5.18 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libpng12-0-1.2.31-5.25 is installed
  • OR libpng12-0-32bit-1.2.31-5.25 is installed
  • OR libpng12-0-x86-1.2.31-5.25 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31 is installed
  • OR libpng12-0-32bit-1.2.31-5.31 is installed
  • OR libpng12-0-x86-1.2.31-5.31 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33 is installed
  • OR libpng12-0-32bit-1.2.31-5.33 is installed
  • OR libpng12-0-x86-1.2.31-5.33 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13 is installed
  • OR libpng12-0-32bit-1.2.31-5.13 is installed
  • OR libpng12-0-x86-1.2.31-5.18 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libpng12-0-1.2.31-5.25 is installed
  • OR libpng12-0-32bit-1.2.31-5.25 is installed
  • OR libpng12-0-x86-1.2.31-5.25 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31 is installed
  • OR libpng12-0-32bit-1.2.31-5.31 is installed
  • OR libpng12-0-x86-1.2.31-5.31 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33 is installed
  • OR libpng12-0-32bit-1.2.31-5.33 is installed
  • OR libpng12-0-x86-1.2.31-5.33 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • libpng-devel-1.2.31-5.33 is installed
  • OR libpng-devel-32bit-1.2.31-5.33 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.13.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.31.1 is installed
  • OR libpng12-0-x86-1.2.31-5.31.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.33.1 is installed
  • OR libpng12-0-x86-1.2.31-5.33.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libpng12-0-1.2.31-5.25 is installed
  • OR libpng12-0-32bit-1.2.31-5.25 is installed
  • OR libpng12-0-x86-1.2.31-5.25 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31 is installed
  • OR libpng12-0-32bit-1.2.31-5.31 is installed
  • OR libpng12-0-x86-1.2.31-5.31 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33 is installed
  • OR libpng12-0-32bit-1.2.31-5.33 is installed
  • OR libpng12-0-x86-1.2.31-5.33 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • libpng-devel-1.2.31-5.33 is installed
  • OR libpng-devel-32bit-1.2.31-5.33 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13 is installed
  • OR libpng12-0-32bit-1.2.31-5.18 is installed
  • OR libpng12-0-x86-1.2.31-5.18 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13 is installed
  • OR libpng12-0-32bit-1.2.31-5.13 is installed
  • OR libpng12-0-x86-1.2.31-5.18 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libpng12-0-1.2.31-5.25.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.25.1 is installed
  • OR libpng12-0-x86-1.2.31-5.25.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.31.1 is installed
  • OR libpng12-0-x86-1.2.31-5.31.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.33.1 is installed
  • OR libpng12-0-x86-1.2.31-5.33.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.18.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.13.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libpng12-0-1.2.31-5.25.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.25.1 is installed
  • OR libpng12-0-x86-1.2.31-5.25.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • libpng12-0-1.2.31-5.31.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.31.1 is installed
  • OR libpng12-0-x86-1.2.31-5.31.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libpng12-0-1.2.31-5.33.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.33.1 is installed
  • OR libpng12-0-x86-1.2.31-5.33.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • libpng-devel-1.2.31-5.33.1 is installed
  • OR libpng-devel-32bit-1.2.31-5.33.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.18.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 11 is installed
  • AND
  • libpng12-0-1.2.31-5.13.1 is installed
  • OR libpng12-0-32bit-1.2.31-5.13.1 is installed
  • OR libpng12-0-x86-1.2.31-5.18.1 is installed
  • BACK