REDHAT-BUG-1264015: Use After Free
Published Sep 17, 2015
·Updated
Use-after-free vulnerability in optipng 0.6.4 causing an invalid/double free was found.
CVE request (containing valgrind report):
http://seclists.org/oss-sec/2015/q3/556
Affected Software
1 affected component
OptiPNG OptiPNG
Event History
Sep 17, 2015
Data Sourced
via Red Hat·10:26 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1264015?
REDHAT-BUG-1264015 is classified as a use-after-free vulnerability, which can lead to potential memory corruption issues.
2
How do I fix REDHAT-BUG-1264015?
To fix REDHAT-BUG-1264015, you should update to the latest version of OptiPNG that addresses the vulnerability.
3
What systems are affected by REDHAT-BUG-1264015?
REDHAT-BUG-1264015 affects systems running OptiPNG version 0.6.4.
4
What are the risks associated with REDHAT-BUG-1264015?
The risks of REDHAT-BUG-1264015 include remote code execution and denial of service due to memory corruption.
5
Is there a known exploit for REDHAT-BUG-1264015?
At this time, there are no publicly reported exploits specifically targeting REDHAT-BUG-1264015.