FEDORA-EPEL-2016-62450e4e38

security update in Fedora EPEL 6 for libpng10

Status: stable 2 years ago

This update fixes an old NULL pointer dereference bug in png_set_text_2() discovered and patched by Patrick Keshishian (CVE-2016-10087). The potential "NULL dereference" bug has existed in libpng since version 0.71 of June 26, 1995. To be vulnerable, an application has to load a text chunk into the png structure, then delete all text, then add another text chunk to the same png structure, which seems to be an unlikely sequence, but it has happened.

The update also fixes some documentation typos and an instance of undefined behavior.

Comments 7

This update has been submitted for testing by pghmcfc.

This update has been pushed to testing.

pghmcfc edited this update.

pghmcfc edited this update.

This update has reached 14 days in testing and can be pushed to stable now if the maintainer wishes

This update has been submitted for stable by pghmcfc.

This update has been pushed to stable.

Add Comment & Feedback

Please login to add feedback.

Content Type
RPM
Status
stable
Test Gating
Submitted by
Update Type
security
Update Severity
medium
Karma
0
stable threshold: 2
unstable threshold: -1
Autopush (karma)
Enabled
Autopush (time)
Disabled
Dates
submitted 2 years ago
in testing 2 years ago
in stable 2 years ago
modified 2 years ago

Related Bugs 3

00 #1409158 libpng10-1.0.67 is available
00 #1409617 CVE-2016-10087 libpng: NULL pointer dereference in png_set_text_2()
00 #1409624 CVE-2016-10087 libpng10: libpng: NULL pointer dereference in png_set_text_2() [epel-6]

Automated Test Results