Gentoo Linux Security Advisory GLSA 200804-15
https://security.gentoo.org/
Severity: High
Title: libpng: Execution of arbitrary code
Date: April 15, 2008
Bugs: #217047
ID: 200804-15
Synopsis
=======
A vulnerability in libpng may allow for execution of arbitrary code in
certain applications that handle untrusted images.
Background
=========
libpng is a free ANSI C library used to process and manipulate PNG
images.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 media-libs/libpng < 1.2.26-r1 >= 1.2.26-r1
==========
Tavis Ormandy of the Google Security Team discovered that libpng does
not handle zero-length unknown chunks in PNG files correctly, which
might lead to...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.