Wind River Support Network

HomeDefectsLIN7-6016
Fixed

LIN7-6016 : Security Advisory - libpng - CVE-2015-8540

Created: Apr 25, 2016    Updated: Sep 8, 2018
Resolved Date: May 15, 2016
Found In Version: 7.0.0.14
Fix Version: 7.0.0.16
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

Integer underflow in the png_check_keyword function in pngwutil.c in libpng 0.90 through 0.99, 1.0.x before 1.0.66, 1.1.x and 1.2.x before 1.2.56, 1.3.x and 1.4.x before 1.4.19, and 1.5.x before 1.5.26 allows remote attackers to have unspecified impact via a space character as a keyword in a PNG image, which triggers an out-of-bounds read.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-8540

Other Downloads


CVEs


Live chat
Online