|
Family: Fedora Local Security Checks --> Category: infos
Fedora Core 1 2004-173: libpng Vulnerability Scan
Vulnerability Scan Summary Check for the version of the libpng package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2004-173 (libpng).
The libpng package contains a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files. PNG
is a bit-mapped graphics format similar to the GIF format. PNG was
created to replace the GIF format, since GIF uses a patented data
compression algorithm.
Libpng should be installed if you need to manipulate PNG format image
files.
Update Information:
During an audit of Red Hat Linux updates, the Fedora Legacy team found a
security issue in libpng that had not been fixed in Fedora Core. An
attacker could carefully craft a PNG file in such a way that
it would cause an application linked to libpng to crash or potentially
execute arbitrary code when opened by a victim.
Solution : http://www.fedoranews.org/updates/FEDORA-2004-173.shtml
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|