Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Debian: DLA-2165-1 Moderate: apng2gif Buffer Overflow Issue

debian lts
Calendar Grey March 31, 2020
Dist Debian Esm H88
A buffer overflow in libpng can lead to memory corruption. Update to version 1.6.37-3+deb10u1 to resolve the vulnerability.
An issue has been found in apng2gif, a tool for converting APNG images to animated GIF format

Summary

One of the function contained an integer overflow resulting in a
heap-based buffer over-read.


For Debian 8 "Jessie", this problem has been fixed in version
1.5-3+deb8u1.

We recommend that you upgrade your apng2gif packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Package: apng2gif
Version: 1.5-3+deb8u1
CVE ID: CVE-2017-6960

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here