MDVSA-2012:033 -- Mandriva libpngID: oval:org.secpod.oval:def:302837 | Date: (C)2012-12-11 (M)2023-11-12 |
Class: PATCH | Family: unix |
A vulnerability has been found and corrected in libpng: A heap-based buffer overflow flaw was found in the way libpng processed compressed chunks in PNG image files. An attacker could create a specially-crafted PNG image file that, when opened, could cause an application using libpng to crash or, possibly, execute arbitrary code with the privileges of the user running the application . The updated packages have been patched to correct this issue.
Platform: |
Mandriva Linux 2011.0 |
Mandriva Linux 2010.1 |