VYPR

rpm package

suse/libpng12-0&distro=SUSE Linux Enterprise Software Development Kit 11 SP4

pkg:rpm/suse/libpng12-0&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4

Vulnerabilities (4)

  • CVE-2016-10087HigJan 30, 2017
    affected < 1.2.31-5.43.1fixed 1.2.31-5.43.1

    The png_set_text_2 function in libpng 0.71 before 1.0.67, 1.2.x before 1.2.57, 1.4.x before 1.4.20, 1.5.x before 1.5.28, and 1.6.x before 1.6.27 allows context-dependent attackers to cause a NULL pointer dereference vectors involving loading a text chunk into a png structure, rem

  • CVE-2015-8540HigApr 14, 2016
    affected < 1.2.31-5.43.1fixed 1.2.31-5.43.1

    Integer underflow in the png_check_keyword function in pngwutil.c in libpng 0.90 through 0.99, 1.0.x before 1.0.66, 1.1.x and 1.2.x before 1.2.56, 1.3.x and 1.4.x before 1.4.19, and 1.5.x before 1.5.26 allows remote attackers to have unspecified impact via a space character as a

  • CVE-2015-7981Nov 24, 2015
    affected < 1.2.31-5.35.1fixed 1.2.31-5.35.1

    The png_convert_to_rfc1123 function in png.c in libpng 1.0.x before 1.0.64, 1.2.x before 1.2.54, and 1.4.x before 1.4.17 allows remote attackers to obtain sensitive process memory information via crafted tIME chunk data in an image file, which triggers an out-of-bounds read.

  • CVE-2015-8126Nov 13, 2015
    affected < 1.2.31-5.35.1fixed 1.2.31-5.35.1

    Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a denial of service (application cr