|
|
| |
|
| |
optipng: code execution
| Package(s): | optipng |
CVE #(s): | CVE-2012-4432
|
| Created: | October 11, 2012 |
Updated: | October 17, 2012 |
| Description: |
From the SUSE Bugzilla entry:
A vulnerability has been reported in OptiPNG, which can be exploited by
malicious people to potentially compromise a user's system.
The vulnerability is caused due to a use-after-free error related to the
palette reduction functionality. No further information is currently
available.
Success exploitation may allow execution of arbitrary code. |
| Alerts: |
|
( Log in to post comments)
|
|
|