Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
FS#47069 - [libpng] CVE-2015-8126: Multiple buffer overflows
Attached to Project:
Arch Linux
Opened by Remi Gacogne (rgacogne) - Saturday, 14 November 2015, 21:19 GMT
Last edited by Evangelos Foutras (foutrelis) - Tuesday, 17 November 2015, 01:02 GMT
Opened by Remi Gacogne (rgacogne) - Saturday, 14 November 2015, 21:19 GMT
Last edited by Evangelos Foutras (foutrelis) - Tuesday, 17 November 2015, 01:02 GMT
|
DetailsSeveral buffer overflows have been found[1] in libpng <= 1.6.18 and fixed in 1.6.19. This vulnerability is remotely exploitable in several configurations and might lead to at least memory corruption.
[1]: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-8126 |
This task depends upon
Closed by Evangelos Foutras (foutrelis)
Tuesday, 17 November 2015, 01:02 GMT
Reason for closing: Fixed
Additional comments about closing: libpng 1.6.19-1
Tuesday, 17 November 2015, 01:02 GMT
Reason for closing: Fixed
Additional comments about closing: libpng 1.6.19-1