Описание
ELSA-2007-0992: Moderate: libpng security update (MODERATE)
[1.2.7-3.el4_5.1]
- Back-port critical fixes from libpng 1.2.22, primarily to fix CVE-2007-5269 Resolves: #337501
- Update License tag and some other obsolete bits in specfile
[1.0.16-3.el4_5.1]
- Back-port critical fixes from libpng 1.0.30, primarily to fix CVE-2007-5269 Resolves: #337561
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
libpng
1.2.10-7.1.el5_0.1
libpng-devel
1.2.10-7.1.el5_0.1
Oracle Linux i386
libpng
1.2.10-7.1.el5_0.1
libpng-devel
1.2.10-7.1.el5_0.1
Связанные CVE
Связанные уязвимости
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 ...
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.