Family: Fedora Local Security Checks --> Category: infos
Fedora Core 2 2004-238: libpng10 Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the libpng10 package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2004-238 (libpng10).
The libpng10 package contains an old version of libpng, a library of
functions for creating and manipulating PNG (Portable Network Graphics)
image format files.
This package is needed if you want to run binaries that were linked
dynamically with libpng 1.0.x
several buffer overflows have been discovered in libpng. A possible hacker
could create a carefully crafted PNG file in such a way that it would
cause an application linked with libpng to execute arbitrary code when
the file was opened by a victim.
Solution : http://www.fedoranews.org/updates/FEDORA-2004-238.shtml
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.