[Bug 504782] libpng: Interlaced Images Information Disclosure Vulnerability

bugzilla at redhat.com bugzilla at redhat.com
Tue Jun 9 13:42:39 UTC 2009


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=504782





--- Comment #7 from Tom Lane <tgl at redhat.com>  2009-06-09 09:42:38 EDT ---
Calling this a security issue seems like a bit of a stretch.  You can only read
portions of individual bytes, you can't control very well which bytes those
are, and the whole thing depends on the application's display code being
seriously buggy (i.e. showing garbage pixels on the right side of an image).

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.



More information about the mingw mailing list