[Bug 608644] CVE-2010-2249 libpng: Memory leak when processing Physical Scale (sCAL) images

bugzilla at redhat.com bugzilla at redhat.com
Tue Jun 29 17:37:00 UTC 2010


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=608644

--- Comment #11 from Glenn Randers-Pehrson <glennrp+bmo at gmail.com> 2010-06-29 13:36:59 EDT ---
(In reply to comment #8)
> Looks like this is the upstream commit to fix this issue:
> 
> http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng;a=commitdiff;h=90cfcecc09febb8d6c8c1d37ea7bb7cf0f4b00f3#patch20

That is an upstream "workaround" for the bug which was removed in a later
commit.  Our "git" commits show much of our work-in-progress, and there are
4 or 5 commits involved in solving this bug.  The actual fix
can be found by diffing pngpread.c from libpng-1.4.2 and 1.4.3.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.


More information about the mingw mailing list