Описание
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | libpng | Not affected | ||
Red Hat Enterprise Linux 3 | libpng | Fixed | RHSA-2010:0534 | 14.07.2010 |
Red Hat Enterprise Linux 3 | libpng10 | Fixed | RHSA-2010:0534 | 14.07.2010 |
Red Hat Enterprise Linux 3 | seamonkey | Fixed | RHSA-2010:0546 | 21.07.2010 |
Red Hat Enterprise Linux 4 | libpng | Fixed | RHSA-2010:0534 | 14.07.2010 |
Red Hat Enterprise Linux 4 | libpng10 | Fixed | RHSA-2010:0534 | 14.07.2010 |
Red Hat Enterprise Linux 4 | seamonkey | Fixed | RHSA-2010:0546 | 21.07.2010 |
Red Hat Enterprise Linux 4 | firefox | Fixed | RHSA-2010:0547 | 21.07.2010 |
Red Hat Enterprise Linux 5 | libpng | Fixed | RHSA-2010:0534 | 14.07.2010 |
Red Hat Enterprise Linux 5 | thunderbird | Fixed | RHSA-2010:0545 | 21.07.2010 |
Показывать по
Дополнительная информация
Статус:
6.8 Medium
CVSS2
Связанные уязвимости
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before ...
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить доступность защищаемой информации
6.8 Medium
CVSS2