UbuntuUpdates.org

Package "pngcheck"

Name: pngcheck

Description:

print info and check PNG, JNG and MNG files

Latest version: 2.3.0-7ubuntu0.20.04.1
Release: focal (20.04)
Level: updates
Repository: universe
Homepage: http://freshmeat.net/projects/pngcheck

Links


Download "pngcheck"


Other versions of "pngcheck" in Focal

Repository Area Version
base universe 2.3.0-7
security universe 2.3.0-7ubuntu0.20.04.1

Changelog

Version: 2.3.0-7ubuntu0.20.04.1 2023-06-21 12:07:06 UTC

  pngcheck (2.3.0-7ubuntu0.20.04.1) focal-security; urgency=medium

  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2020-27818.patch: fixed an issue in check_chunk_name
      function.
    - debian/patches/CVE-2020-35511-[1-6].patch: fixed a buffer overflow in
      pngcheck function.
    - CVE-2020-27818
    - CVE-2020-35511

 -- Amir Naseredini <email address hidden> Tue, 20 Jun 2023 14:35:43 +0100

CVE-2020-27818 A flaw was found in the check_chunk_name() function of pngcheck-2.4.0. An attacker able to pass a malicious file to be processed by pngcheck could ca
CVE-2020-35511 A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.



About   -   Send Feedback to @ubuntu_updates