First published: Thu Sep 17 2015(Updated: )
Use-after-free vulnerability in optipng 0.6.4 causing an invalid/double free was found. CVE request (containing valgrind report): <a href="http://seclists.org/oss-sec/2015/q3/556">http://seclists.org/oss-sec/2015/q3/556</a>
Affected Software | Affected Version | How to fix |
---|---|---|
OptiPNG |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-1264015 is classified as a use-after-free vulnerability, which can lead to potential memory corruption issues.
To fix REDHAT-BUG-1264015, you should update to the latest version of OptiPNG that addresses the vulnerability.
REDHAT-BUG-1264015 affects systems running OptiPNG version 0.6.4.
The risks of REDHAT-BUG-1264015 include remote code execution and denial of service due to memory corruption.
At this time, there are no publicly reported exploits specifically targeting REDHAT-BUG-1264015.