Product: Solaris 8, Solaris 9, Solaris 10, OpenSolaris

Multiple security vulnerabilities in libpng(3), which is shipped with Solaris, may allow a local or remote unprivileged user to disclose potentially sensitive information associated with applications linked to libpng(3), when a user has loaded a specially crafted Portable Network Graphics (PNG) format image file (.png) supplied by an untrusted user.

These issues are also described in the following document:

    CVE-2009-2042 at: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2042

State: Workaround
First released: 14-Oct-2009
Permalink |

Comments:

Post a Comment:

Comments are closed for this entry.