libpng: Buffer overflow vulnerabilities in png_get_PLTE/png_set_PLTE functions
Published Nov 13, 2015
7.5
HIGHCVSS 2.0
EPSS 10.34%
Description
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a small bit-depth value in an IHDR (aka image header) chunk in a PNG image.
Affected products
No data.
Configuration 1
Configuration 2
- 21
- 22
- 23
Configuration 3
- 42.1
- 13.1
- 13.2
- 11
- 11
- 12
- 12
- 12
- 12
Configuration 4
- 7.0
- 8.0
- 9.0
Configuration 5
- 5.7
- 6.0
- 7.0
- 6.7
- 7.2
- 7.3
- 7.4
- 7.5
- 7.6
- 7.7
- 6.0
- 7.0
- 7.2
- 7.3
- 7.4
- 7.6
- 7.7
- 7.2
- 7.3
- 7.6
- 7.7
- 6.0
- 7.0
Configuration 6
Running on/with
- 5.0
- 6.0
Configuration 7
- 1.6.0
- 1.7.0
- 1.8.0
- 1.8.0
- 1.6.0
- 1.7.0
- 1.8.0
- 1.8.0
- 6
- 7
- 11.3
Configuration 9
- 12.04
- 14.04
- 15.04
- 15.10
No data.
Oracle Java for Red Hat Enterprise Linux 5
java-1.6.0-sun-1:1.6.0.111-1jpp.3.el5_11
Fixed · RHSA-2016:0057
Oracle Java for Red Hat Enterprise Linux 5
java-1.7.0-oracle-1:1.7.0.95-1jpp.1.el5_11
Fixed · RHSA-2016:0056
Oracle Java for Red Hat Enterprise Linux 6
java-1.6.0-sun-1:1.6.0.111-1jpp.3.el6_7
Fixed · RHSA-2016:0057
Oracle Java for Red Hat Enterprise Linux 6
java-1.7.0-oracle-1:1.7.0.95-1jpp.1.el6_7
Fixed · RHSA-2016:0056
Oracle Java for Red Hat Enterprise Linux 6
java-1.8.0-oracle-1:1.8.0.71-1jpp.1.el6_7
Fixed · RHSA-2016:0055
Oracle Java for Red Hat Enterprise Linux 7
java-1.6.0-sun-1:1.6.0.111-1jpp.1.el7
Fixed · RHSA-2016:0057
Oracle Java for Red Hat Enterprise Linux 7
java-1.7.0-oracle-1:1.7.0.95-1jpp.2.el7
Fixed · RHSA-2016:0056
Oracle Java for Red Hat Enterprise Linux 7
java-1.8.0-oracle-1:1.8.0.71-1jpp.1.el7
Fixed · RHSA-2016:0055
Red Hat Enterprise Linux 5 Supplementary
java-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el5
Fixed · RHSA-2016:0101
Red Hat Enterprise Linux 5 Supplementary
java-1.7.0-ibm-1:1.7.0.9.30-1jpp.1.el5
Fixed · RHSA-2016:0100
Red Hat Enterprise Linux 6
libpng-2:1.2.49-2.el6_7
Fixed · RHSA-2015:2594
Red Hat Enterprise Linux 6 Supplementary
java-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el6_7
Fixed · RHSA-2016:0101
Red Hat Enterprise Linux 6 Supplementary
java-1.7.1-ibm-1:1.7.1.3.30-1jpp.2.el6_7
Fixed · RHSA-2016:0099
Red Hat Enterprise Linux 7
libpng-2:1.5.13-7.el7_2
Fixed · RHSA-2015:2596
Red Hat Enterprise Linux 7
libpng12-0:1.2.50-7.el7_2
Fixed · RHSA-2015:2595
Red Hat Enterprise Linux 7 Supplementary
java-1.7.1-ibm-1:1.7.1.3.30-1jpp.1.el7
Fixed · RHSA-2016:0099
Red Hat Enterprise Linux 7 Supplementary
java-1.8.0-ibm-1:1.8.0.2.10-1jpp.1.el7
Fixed · RHSA-2016:0098
Red Hat Satellite 5.6
java-1.7.0-ibm-1:1.7.0.9.40-1jpp.1.el5
Fixed · RHSA-2016:1430
Red Hat Satellite 5.6
java-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7
Fixed · RHSA-2016:1430
Red Hat Satellite 5.6
spacewalk-java-0:2.0.2-109.el5sat
Fixed · RHSA-2016:1430
Red Hat Satellite 5.7
java-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7
Fixed · RHSA-2016:1430
Red Hat Satellite 5.7
spacewalk-java-0:2.3.8-146.el6sat
Fixed · RHSA-2016:1430
Red Hat Enterprise Linux 5
libpng
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Oracle Java for Red Hat Enterprise Linux 5 | java-1.6.0-sun-1:1.6.0.111-1jpp.3.el5_11 | Fixed | RHSA-2016:0057 |
| Oracle Java for Red Hat Enterprise Linux 5 | java-1.7.0-oracle-1:1.7.0.95-1jpp.1.el5_11 | Fixed | RHSA-2016:0056 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.6.0-sun-1:1.6.0.111-1jpp.3.el6_7 | Fixed | RHSA-2016:0057 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.7.0-oracle-1:1.7.0.95-1jpp.1.el6_7 | Fixed | RHSA-2016:0056 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.8.0-oracle-1:1.8.0.71-1jpp.1.el6_7 | Fixed | RHSA-2016:0055 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.6.0-sun-1:1.6.0.111-1jpp.1.el7 | Fixed | RHSA-2016:0057 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.7.0-oracle-1:1.7.0.95-1jpp.2.el7 | Fixed | RHSA-2016:0056 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.8.0-oracle-1:1.8.0.71-1jpp.1.el7 | Fixed | RHSA-2016:0055 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el5 | Fixed | RHSA-2016:0101 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.7.0-ibm-1:1.7.0.9.30-1jpp.1.el5 | Fixed | RHSA-2016:0100 |
| Red Hat Enterprise Linux 6 | libpng-2:1.2.49-2.el6_7 | Fixed | RHSA-2015:2594 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el6_7 | Fixed | RHSA-2016:0101 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.7.1-ibm-1:1.7.1.3.30-1jpp.2.el6_7 | Fixed | RHSA-2016:0099 |
| Red Hat Enterprise Linux 7 | libpng-2:1.5.13-7.el7_2 | Fixed | RHSA-2015:2596 |
| Red Hat Enterprise Linux 7 | libpng12-0:1.2.50-7.el7_2 | Fixed | RHSA-2015:2595 |
| Red Hat Enterprise Linux 7 Supplementary | java-1.7.1-ibm-1:1.7.1.3.30-1jpp.1.el7 | Fixed | RHSA-2016:0099 |
| Red Hat Enterprise Linux 7 Supplementary | java-1.8.0-ibm-1:1.8.0.2.10-1jpp.1.el7 | Fixed | RHSA-2016:0098 |
| Red Hat Satellite 5.6 | java-1.7.0-ibm-1:1.7.0.9.40-1jpp.1.el5 | Fixed | RHSA-2016:1430 |
| Red Hat Satellite 5.6 | java-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7 | Fixed | RHSA-2016:1430 |
| Red Hat Satellite 5.6 | spacewalk-java-0:2.0.2-109.el5sat | Fixed | RHSA-2016:1430 |
| Red Hat Satellite 5.7 | java-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7 | Fixed | RHSA-2016:1430 |
| Red Hat Satellite 5.7 | spacewalk-java-0:2.3.8-146.el6sat | Fixed | RHSA-2016:1430 |
| Red Hat Enterprise Linux 5 | libpng | Will not fix | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (60)
- http://googlechromereleases.blogspot.com/2016/03/stable-channel-update.html x_refsource_CONFIRMThird Party Advisory
- http://lists.apple.com/archives/security-announce/2016/Mar/msg00004.html vendor-advisoryx_refsource_APPLEMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172324.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172620.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172647.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172663.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172769.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172797.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172823.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177344.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177382.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-January/174905.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-January/174936.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2016-January/175073.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00033.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00034.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00014.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00015.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00018.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00028.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-11/msg00159.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-11/msg00160.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-12/msg00062.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-12/msg00063.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2016-01/msg00028.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2016-01/msg00029.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2016-01/msg00030.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-2594.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-2595.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-2596.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0055.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0056.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0057.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.debian.org/security/2015/dsa-3399 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.debian.org/security/2016/dsa-3507 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.openwall.com/lists/oss-security/2015/11/12/2 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html x_refsource_CONFIRMThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html x_refsource_CONFIRMThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html x_refsource_CONFIRMThird Party Advisory
- http://www.securityfocus.com/bid/77568 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1034142 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-2815-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:1430 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2015-8126 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1281756 Issue Tracking
- https://code.google.com/p/chromium/issues/detail?id=560291 x_refsource_CONFIRMIssue TrackingPatchThird Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10148 x_refsource_CONFIRMThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2015-8126
- https://security.gentoo.org/glsa/201603-09 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://security.gentoo.org/glsa/201611-08 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://support.apple.com/HT206167 x_refsource_CONFIRMThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2015-8126
Change history (0)
No recorded changes yet.