First published: Thu Oct 29 2015(Updated: )
An out-of-bounds read in png_convert_to_rfc1123 in png.c was found. Upstream bug: <a href="http://sourceforge.net/p/libpng/bugs/241/">http://sourceforge.net/p/libpng/bugs/241/</a> Upstream patch: <a href="http://sourceforge.net/p/libpng/code/ci/fbf0f024346ca0a4ffc64b082a95c6b6bb6d29c4/">http://sourceforge.net/p/libpng/code/ci/fbf0f024346ca0a4ffc64b082a95c6b6bb6d29c4/</a> CVE assignment: <a href="http://seclists.org/oss-sec/2015/q4/161">http://seclists.org/oss-sec/2015/q4/161</a>
Affected Software | Affected Version | How to fix |
---|---|---|
libpng |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-1276416 is classified as a moderate severity vulnerability due to the potential for out-of-bounds read.
To fix REDHAT-BUG-1276416, ensure you upgrade to the latest patched version of Libpng.
The vulnerability in REDHAT-BUG-1276416 involves an out-of-bounds read in the png_convert_to_rfc1123 function in png.c.
REDHAT-BUG-1276416 affects users of Libpng and applications dependent on it.
REDHAT-BUG-1276416 was reported as an upstream bug on Sourceforge.