REDHAT-BUG-1599943: Integer Overflow
libpng through version 1.6.34 is vulnerable to an integer overflow and resultant divide-by-zero in the pngrutil.c:pngcheckchunklength() function. An attacker could exploit this to cause a denial of service via crafted PNG file.
Upstream Bug:
https://sourceforge.net/p/libpng/bugs/278/
Upstream Patch:
https://github.com/glennrp/libpng/commit/8a05766cb74af05c04c53e6c9d60c13fc4d59bf2
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1599943?
The severity of REDHAT-BUG-1599943 is classified as a denial of service vulnerability.
How do I fix REDHAT-BUG-1599943?
To fix REDHAT-BUG-1599943, upgrade to libpng version 1.6.35 or later.
What versions of libpng are affected by REDHAT-BUG-1599943?
libpng versions up to and including 1.6.34 are affected by REDHAT-BUG-1599943.
What could an attacker do using the vulnerability in REDHAT-BUG-1599943?
An attacker could exploit REDHAT-BUG-1599943 to cause a denial of service by using a crafted PNG file.
Where can I find more information about REDHAT-BUG-1599943?
More information about REDHAT-BUG-1599943 can be found in the related bug reports and upstream discussions.