[Bug 1086674] New: CVE-2013-7353 mingw32-libpng: libpng: integer overflow leading to a heap-based buffer overflow in png_set_unknown_chunks() [epel-6]

bugzilla at redhat.com bugzilla at redhat.com
Fri Apr 11 09:47:09 UTC 2014


https://bugzilla.redhat.com/show_bug.cgi?id=1086674

            Bug ID: 1086674
           Summary: CVE-2013-7353 mingw32-libpng: libpng: integer overflow
                    leading to a heap-based buffer overflow in
                    png_set_unknown_chunks() [epel-6]
           Product: Fedora EPEL
           Version: el6
         Component: mingw32-libpng
          Keywords: Security, SecurityTracking
          Severity: medium
          Priority: medium
          Assignee: rjones at redhat.com
          Reporter: huzaifas at redhat.com
        QA Contact: extras-qa at fedoraproject.org
                CC: drizt at land.ru, fedora-mingw at lists.fedoraproject.org,
                    ktietz at redhat.com, lfarkas at lfarkas.org,
                    rjones at redhat.com
            Blocks: 1086514 (CVE-2013-7353)




This is an automatically created tracking bug!  It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.

For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.

For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs

When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s).  This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.

Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.

epel-6 tracking bug for mingw32-libpng: see blocks bug list for full details of
the security issue(s).

[bug automatically created by: add-tracking-bugs]


Referenced Bugs:

https://bugzilla.redhat.com/show_bug.cgi?id=1086514
[Bug 1086514] CVE-2013-7353 libpng: integer overflow leading to a
heap-based buffer overflow in png_set_unknown_chunks()
-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=NMm3UNhBqh&a=cc_unsubscribe


More information about the mingw mailing list