MDVSA-2012:033 -- Mandriva libpngID: oval:org.secpod.oval:def:1300053 | Date: (C)2013-04-08 (M)2023-11-09 |
Class: PATCH | Family: unix |
A vulnerability has been found and corrected in libpng: A heap-based buffer overflow flaw was found in the way libpng processed compressed chunks in PNG image files. An attacker could create a specially-crafted PNG image file that, when opened, could cause an application using libpng to crash or, possibly, execute arbitrary code with the privileges of the user running the application . The updated packages have been patched to correct this issue.
Platform: |
Mandriva Enterprise Server 5.2 |