Slashdot Mirror


CERT Warns Of Multiple Vulnerabilities In Libpng

jefftp writes "CERT announced today that there are several vulnerabilities in libpng, one is a buffer overflow which could potentially cause a PNG image file to execute arbitrary code. Libpng release 1.2.6rc1 addresses the problems covered by this CERT announcement, and can be obtained from the libpng Sourceforge project. A fully tested version is to be released in the next few weeks."

1 of 259 comments (clear)

  1. Re:Diagram by skraps · · Score: 0, Redundant

    Uhhhh. Lighten up mods, it's a *JOKE*. The linked file is a *PNG*. Get it?

    --
    Karma: -2147483648 (Mostly affected by integer overflow)