Описание
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
Отчет
In general, this flaw cannot be exploited through email in Thunderbird because scripting is disabled when reading mail, but it is potentially a risk in browser or browser-like contexts.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | libpng | Not affected | ||
Red Hat Enterprise Linux 6 | libpng | Not affected | ||
Red Hat Enterprise Linux 7 | libpng | Not affected | ||
Red Hat Enterprise Linux 7 | libpng12 | Not affected | ||
Red Hat Enterprise Linux 8 | libpng | Fix deferred | ||
Red Hat Enterprise Linux 8 | libpng12 | Not affected | ||
Red Hat Enterprise Linux 8 | mingw-libpng | Fix deferred | ||
Red Hat Enterprise Linux 6 | firefox | Fixed | RHSA-2019:1267 | 23.05.2019 |
Red Hat Enterprise Linux 6 | thunderbird | Fixed | RHSA-2019:1310 | 03.06.2019 |
Red Hat Enterprise Linux 6 Supplementary | java-1.7.1-ibm | Fixed | RHSA-2019:2494 | 15.08.2019 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after- ...
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
EPSS
5.3 Medium
CVSS3