Gentoo Linux Security Advisory GLSA 200903-12
https://security.gentoo.org/
Severity: Normal
Title: OptiPNG: User-assisted execution of arbitrary code
Date: March 09, 2009
Bugs: #260265
ID: 200903-12
Synopsis
=======
A vulnerability in OptiPNG might result in user-assisted execution of
arbitrary code.
Background
=========
OptiPNG is a PNG optimizer that recompresses image files to a smaller
size, without losing any information.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 media-gfx/optipng < 0.6.2-r1 >= 0.6.2-r1
==========
Roy Tam reported a use-after-free vulnerability in the
GIFReadNextExtension() function in lib/pngxtern/gif/gifread.c leading
to a memory ...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.