Family: Fedora Local Security Checks --> Category: infos
Fedora Core 1 2004-174: libpng10 Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the libpng10 package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2004-174 (libpng10).
The libpng10 package contains an old version of libpng, a library of
functions for creating and manipulating PNG (Portable Network Graphics)
image format files.
This package is needed if you want to run binaries that were linked
with libpng 1.0.x.
During an audit of Red Hat Linux updates, the Fedora Legacy team found a
security issue in libpng that had not been fixed in Fedora Core. An
attacker could carefully craft a PNG file in such a way that
it would cause an application linked to libpng to crash or potentially
execute arbitrary code when opened by a victim.
Solution : http://www.fedoranews.org/updates/FEDORA-2004-174.shtml
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.