Wind River Support Network

HomeDefectsLIN9-8099
Fixed

LIN9-8099 : Security Advisory - libpng - CVE-2019-7317

Created: Feb 14, 2019    Updated: Jun 12, 2019
Resolved Date: May 24, 2019
Found In Version: 9.0.0.19
Fix Version: 9.0.0.21
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

png_image_free in png.c in libpng 1.6.36 has a use-after-free because png_image_free_function is called under png_safe_execute.

https://nvd.nist.gov/vuln/detail/CVE-2019-7317

CVEs


Live chat
Online