Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 and 1.2.x before 1.2.21 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image that prevents a name field from being NULL terminated.
http://android-developers.blogspot.com/2008/03/android-sdk-update-m5-rc15-released.html
http://bugs.gentoo.org/show_bug.cgi?id=195261
http://docs.info.apple.com/article.html?artnum=307562
http://lists.apple.com/archives/security-announce/2008//May/msg00001.html
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
http://secunia.com/advisories/27284
http://secunia.com/advisories/27529
http://secunia.com/advisories/27629
http://secunia.com/advisories/27746
http://secunia.com/advisories/29420
http://secunia.com/advisories/30161
http://secunia.com/advisories/30430
http://secunia.com/advisories/35302
http://secunia.com/advisories/35386
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.520323
http://sunsolve.sun.com/search/document.do?assetkey=1-66-259989-1
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020521.1-1
http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm
http://www.coresecurity.com/?action=item&id=2148
http://www.gentoo.org/security/en/glsa/glsa-200711-08.xml
http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:217
http://www.securityfocus.com/archive/1/483582/100/0/threaded
http://www.securityfocus.com/archive/1/489135/100/0/threaded
http://www.securityfocus.com/bid/25957
http://www.us-cert.gov/cas/techalerts/TA08-150A.html
http://www.vupen.com/english/advisories/2008/0924/references
http://www.vupen.com/english/advisories/2008/1697
http://www.vupen.com/english/advisories/2009/1462
OR
cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:* versions up to 1.0.28 (inclusive)
cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:* versions from 1.2.0 to 1.2.20 (inclusive)
ID | Name | Product | Family | Severity |
---|---|---|---|---|
107983 | Solaris 10 (x86) : 137081-10 | Nessus | Solaris Local Security Checks | high |
107982 | Solaris 10 (x86) : 137081-09 | Nessus | Solaris Local Security Checks | high |
107981 | Solaris 10 (x86) : 137081-07 | Nessus | Solaris Local Security Checks | high |
107485 | Solaris 10 (sparc) : 137080-10 | Nessus | Solaris Local Security Checks | high |
107484 | Solaris 10 (sparc) : 137080-09 | Nessus | Solaris Local Security Checks | high |
107483 | Solaris 10 (sparc) : 137080-07 | Nessus | Solaris Local Security Checks | high |
79964 | GLSA-201412-11 : AMD64 x86 emulation base libraries: Multiple vulnerabilities (Heartbleed) | Nessus | Gentoo Local Security Checks | high |
32478 | Mac OS X Multiple Vulnerabilities (Security Update 2008-003) | Nessus | MacOS X Local Security Checks | critical |
32477 | Mac OS X 10.5.x < 10.5.3 Multiple Vulnerabilities | Nessus | MacOS X Local Security Checks | critical |
31605 | Mac OS X Multiple Vulnerabilities (Security Update 2008-002) | Nessus | MacOS X Local Security Checks | critical |
31337 | Solaris 10 (x86) : 137081-11 (deprecated) | Nessus | Solaris Local Security Checks | high |
31333 | Solaris 10 (sparc) : 137080-11 (deprecated) | Nessus | Solaris Local Security Checks | high |
28296 | SSA-2007-325-01a libpng for Slackware 10.1 and 10.2 | Nessus | Slackware Local Security Checks | medium |
28295 | Slackware 10.0 / 10.1 / 10.2 / 11.0 / 12.0 / 8.1 / 9.0 / 9.1 / current : libpng (SSA:2007-325-01) | Nessus | Slackware Local Security Checks | medium |
28200 | Mandrake Linux Security Advisory : libpng (MDKSA-2007:217) | Nessus | Mandriva Local Security Checks | medium |
28145 | Ubuntu 6.06 LTS / 6.10 / 7.04 / 7.10 : libpng vulnerabilities (USN-538-1) | Nessus | Ubuntu Local Security Checks | medium |
27825 | GLSA-200711-08 : libpng: Multiple Denials of Service | Nessus | Gentoo Local Security Checks | medium |
26977 | FreeBSD : png -- multiple vulnerabilities (172acf78-780c-11dc-b3f4-0016179b2dd5) | Nessus | FreeBSD Local Security Checks | medium |
4523 | Mac OS X < 10.5.3 | Nessus Network Monitor | Generic | critical |