Family: Fedora Local Security Checks --> Category: infos
Fedora Core 1 2004-237: libpng Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the libpng package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2004-237 (libpng).
The libpng package contains a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files. PNG
is a bit-mapped graphics format similar to the GIF format. PNG was
created to replace the GIF format, since GIF uses a patented data
Libpng should be installed if you need to manipulate PNG format image
several buffer overflows were found in libpng. A possible hacker could create
a carefully crafted PNG file in such a way that it would cause an
application linked with libpng to execute arbitrary code when the file
was opened by a victim.
Solution : http://www.fedoranews.org/updates/FEDORA-2004-237.shtml
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.