Executive Summary

Summary
Title libpng vulnerability
Informations
NameUSN-1402-1First vendor Publication2012-03-22
VendorUbuntuLast vendor Modification2012-03-22
Severity (Vendor) N/ARevisionN/A

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P)
Cvss Base Score6.8Attack RangeNetwork
Cvss Impact Score6.4Attack ComplexityMedium
Cvss Expoit Score8.6AuthentificationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 11.10
- Ubuntu 11.04
- Ubuntu 10.10
- Ubuntu 10.04 LTS
- Ubuntu 8.04 LTS

Summary:

libpng could be made to crash or run programs as your login if it
opened a specially crafted file.

Software Description:
- libpng: PNG (Portable Network Graphics) file library

Details:

It was discovered that libpng did not properly process compressed chunks.
If a user or automated system using libpng were tricked into opening a
specially crafted image, an attacker could exploit this to cause a denial
of service or execute code with the privileges of the user invoking the
program.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.10:
libpng12-0 1.2.46-3ubuntu1.2

Ubuntu 11.04:
libpng12-0 1.2.44-1ubuntu3.3

Ubuntu 10.10:
libpng12-0 1.2.44-1ubuntu0.3

Ubuntu 10.04 LTS:
libpng12-0 1.2.42-1ubuntu2.4

Ubuntu 8.04 LTS:
libpng12-0 1.2.15~beta5-3ubuntu0.6

After a standard system update you need to restart your session to make all
the necessary changes.

References:
http://www.ubuntu.com/usn/usn-1402-1
CVE-2011-3045

Package Information:
https://launchpad.net/ubuntu/+source/libpng/1.2.46-3ubuntu1.2
https://launchpad.net/ubuntu/+source/libpng/1.2.44-1ubuntu3.3
https://launchpad.net/ubuntu/+source/libpng/1.2.44-1ubuntu0.3
https://launchpad.net/ubuntu/+source/libpng/1.2.42-1ubuntu2.4
https://launchpad.net/ubuntu/+source/libpng/1.2.15~beta5-3ubuntu0.6


Original Source

Url : http://www.ubuntu.com/usn/USN-1402-1

CWE : Common Weakness Enumeration

idName
CWE-189Numeric Errors

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:14763
 
Oval ID: oval:org.mitre.oval:def:14763
Title: Integer signedness error in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file, a different vulnerability than CVE-2011-3026.
Description: Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file, a different vulnerability than CVE-2011-3026.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3045
Version: 8
Platform(s): Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows XP
Microsoft Windows 2000
Product(s): Google Chrome
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application2040