[Bug 1086516] CVE-2013-7354 libpng: integer overflow leading to a heap-based buffer overflow in png_set_sPLT() and png_set_text_2()

bugzilla at redhat.com bugzilla at redhat.com
Fri Apr 11 09:42:15 UTC 2014


https://bugzilla.redhat.com/show_bug.cgi?id=1086516



--- Comment #1 from Huzaifa S. Sidhpurwala <huzaifas at redhat.com> ---
This issue was addressed by the following upstream commits for libpng-1.6:

http://sourceforge.net/p/libpng/code/ci/590c8b0987f192ae588f6d952bfff5b398c4cb8b
http://sourceforge.net/p/libpng/code/ci/2414bd99d8c76f92ca9272f1b1b1eff55709298a/

This issue was addressed by the following upstream commits for libpng-1.5.14:

http://sourceforge.net/p/libpng/code/ci/798d3de5f66b6df6d6605f968da641c24725b15e
http://sourceforge.net/p/libpng/code/ci/77a0a2ea113e699c7021caf1a530d2e2dd90b497

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=V08SezEZCe&a=cc_unsubscribe


More information about the mingw mailing list