CVE-2015-7981: Infoleak
An out-of-bounds read in pngconverttorfc1123 in png.c was found.
Upstream bug:
http://sourceforge.net/p/libpng/bugs/241/
Upstream patch:
http://sourceforge.net/p/libpng/code/ci/fbf0f024346ca0a4ffc64b082a95c6b6bb6d29c4/
CVE assignment:
http://seclists.org/oss-sec/2015/q4/161
Other sources
The pngconverttorfc1123 function in png.c in libpng 1.0.x before 1.0.64, 1.2.x before 1.2.54, and 1.4.x before 1.4.17 allows remote attackers to obtain sensitive process memory information via crafted tIME chunk data in an image file, which triggers an out-of-bounds read.
— MITRE
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7981?
CVE-2015-7981 has been classified as a medium severity vulnerability.
How do I fix CVE-2015-7981?
To fix CVE-2015-7981, upgrade to a patched version of libpng that addresses this vulnerability.
What software is affected by CVE-2015-7981?
CVE-2015-7981 affects various versions of libpng and several distributions including Ubuntu 12.04, 14.04, and various Red Hat Enterprise Linux versions.
What type of vulnerability is CVE-2015-7981?
CVE-2015-7981 is categorized as an out-of-bounds read vulnerability.
Is CVE-2015-7981 exploitable?
Yes, CVE-2015-7981 may be exploited to cause information disclosure or application crashes under certain conditions.