[Full-disclosure] rPSA-2007-0102-1 libpng

rPath Update Announcements announce-noreply at rpath.com
Thu May 17 03:01:04 BST 2007


rPath Security Advisory: 2007-0102-1
Published: 2007-05-16
Products: rPath Linux 1
Rating: Minor
Exposure Level Classification:
    Indirect User Deterministic Denial of Service
Updated Versions:
    libpng=/conary.rpath.com at rpl:devel//1/1.2.18-1-0.1

References:
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2445
    https://issues.rpath.com/browse/RPL-1381
    http://www.kb.cert.org/vuls/id/684664

Description:
    Previous versions of the libpng package can cause applications to
    crash when loading malformed PNG files.  It is not currently known
    whether this vulnerability can be exploited to execute malicious code.

Copyright 2007 rPath, Inc.
This file is distributed under the terms of the MIT License.
A copy is available at http://www.rpath.com/permanent/mit-license.html




Full-Disclosure is hosted and sponsored by Secunia.