2017-10-16 12:31:07 -04:00
{
2019-03-18 04:10:00 +00:00
"CVE_data_meta" : {
"ASSIGNER" : "secalert@redhat.com" ,
"ID" : "CVE-2008-1382" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a" ,
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
} ,
"vendor_name" : "n/a"
}
2017-10-16 12:31:07 -04:00
]
2019-03-18 04:10:00 +00:00
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
"value" : "libpng 1.0.6 through 1.0.32, 1.2.0 through 1.2.26, and 1.4.0beta01 through 1.4.0beta19 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG file with zero length \"unknown\" chunks, which trigger an access of uninitialized memory."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"name" : "SUSE-SR:2008:010" ,
"refsource" : "SUSE" ,
"url" : "http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00011.html"
} ,
{
"name" : "RHSA-2009:0333" ,
"refsource" : "REDHAT" ,
"url" : "http://www.redhat.com/support/errata/RHSA-2009-0333.html"
} ,
{
"name" : "35386" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/35386"
} ,
{
"name" : "ADV-2008-1225" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/1225/references"
} ,
{
"name" : "30157" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30157"
} ,
{
"name" : "30174" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30174"
} ,
{
"name" : "1020521" ,
"refsource" : "SUNALERT" ,
"url" : "http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020521.1-1"
} ,
{
"name" : "http://support.apple.com/kb/HT3549" ,
"refsource" : "CONFIRM" ,
"url" : "http://support.apple.com/kb/HT3549"
} ,
{
"name" : "APPLE-SA-2008-09-15" ,
"refsource" : "APPLE" ,
"url" : "http://lists.apple.com/archives/security-announce//2008/Sep/msg00005.html"
} ,
{
"name" : "44364" ,
"refsource" : "OSVDB" ,
"url" : "http://www.osvdb.org/44364"
} ,
{
"name" : "ADV-2009-1560" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2009/1560"
} ,
{
"name" : "34388" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/34388"
} ,
{
"name" : "ADV-2009-1462" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2009/1462"
} ,
{
"name" : "GLSA-200805-10" ,
"refsource" : "GENTOO" ,
"url" : "http://security.gentoo.org/glsa/glsa-200805-10.xml"
} ,
{
"name" : "FEDORA-2008-4910" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00080.html"
} ,
{
"name" : "FEDORA-2008-3937" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00960.html"
} ,
{
"name" : "30486" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30486"
} ,
{
"name" : "http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0151" ,
"refsource" : "CONFIRM" ,
"url" : "http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0151"
} ,
{
"name" : "http://www.vmware.com/security/advisories/VMSA-2009-0007.html" ,
"refsource" : "CONFIRM" ,
"url" : "http://www.vmware.com/security/advisories/VMSA-2009-0007.html"
} ,
{
"name" : "TA08-260A" ,
"refsource" : "CERT" ,
"url" : "http://www.us-cert.gov/cas/techalerts/TA08-260A.html"
} ,
{
"name" : "30402" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30402"
} ,
{
"name" : "259989" ,
"refsource" : "SUNALERT" ,
"url" : "http://sunsolve.sun.com/search/document.do?assetkey=1-66-259989-1"
} ,
{
"name" : "35302" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/35302"
} ,
{
"name" : "FEDORA-2008-4847" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00033.html"
} ,
{
"name" : "SSA:2008-119-01" ,
"refsource" : "SLACKWARE" ,
"url" : "http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.541247"
} ,
{
"name" : "20080429 rPSA-2008-0151-1 libpng" ,
"refsource" : "BUGTRAQ" ,
"url" : "http://www.securityfocus.com/archive/1/491424/100/0/threaded"
} ,
{
"name" : "35074" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/35074"
} ,
{
"name" : "ADV-2008-2584" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/2584"
} ,
{
"name" : "29792" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29792"
} ,
{
"name" : "1019840" ,
"refsource" : "SECTRACK" ,
"url" : "http://www.securitytracker.com/id?1019840"
} ,
{
"name" : "ADV-2009-1451" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2009/1451"
} ,
{
"name" : "APPLE-SA-2009-05-12" ,
"refsource" : "APPLE" ,
"url" : "http://lists.apple.com/archives/security-announce/2009/May/msg00002.html"
} ,
{
"name" : "31882" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/31882"
} ,
{
"name" : "GLSA-200804-15" ,
"refsource" : "GENTOO" ,
"url" : "http://security.gentoo.org/glsa/glsa-200804-15.xml"
} ,
{
"name" : "29992" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29992"
} ,
{
"name" : "FEDORA-2008-3683" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00721.html"
} ,
{
"name" : "20090529 VMSA-2009-0007 VMware Hosted products and ESX and ESXi patches resolve security issues" ,
"refsource" : "BUGTRAQ" ,
"url" : "http://www.securityfocus.com/archive/1/503912/100/0/threaded"
} ,
{
"name" : "29678" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29678"
} ,
{
"name" : "libpng-zero-length-code-execution(41800)" ,
"refsource" : "XF" ,
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/41800"
} ,
{
"name" : "GLSA-200812-15" ,
"refsource" : "GENTOO" ,
"url" : "http://security.gentoo.org/glsa/glsa-200812-15.xml"
} ,
{
"name" : "DSA-1750" ,
"refsource" : "DEBIAN" ,
"url" : "http://www.debian.org/security/2009/dsa-1750"
} ,
{
"name" : "http://www.ocert.org/advisories/ocert-2008-003.html" ,
"refsource" : "MISC" ,
"url" : "http://www.ocert.org/advisories/ocert-2008-003.html"
} ,
{
"name" : "20080414 [oCERT-2008-003] libpng zero-length chunks incorrect handling" ,
"refsource" : "BUGTRAQ" ,
"url" : "http://www.securityfocus.com/archive/1/490823/100/0/threaded"
} ,
{
"name" : "http://libpng.sourceforge.net/Advisory-1.2.26.txt" ,
"refsource" : "CONFIRM" ,
"url" : "http://libpng.sourceforge.net/Advisory-1.2.26.txt"
} ,
{
"name" : "oval:org.mitre.oval:def:10326" ,
"refsource" : "OVAL" ,
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10326"
} ,
{
"name" : "TA09-133A" ,
"refsource" : "CERT" ,
"url" : "http://www.us-cert.gov/cas/techalerts/TA09-133A.html"
} ,
{
"name" : "ADV-2009-1297" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2009/1297"
} ,
{
"name" : "33137" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/33137"
} ,
{
"name" : "oval:org.mitre.oval:def:6275" ,
"refsource" : "OVAL" ,
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6275"
} ,
{
"name" : "34152" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/34152"
} ,
{
"name" : "MDVSA-2008:156" ,
"refsource" : "MANDRIVA" ,
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2008:156"
} ,
{
"name" : "35258" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/35258"
} ,
{
"name" : "30009" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30009"
} ,
{
"name" : "28770" ,
"refsource" : "BID" ,
"url" : "http://www.securityfocus.com/bid/28770"
} ,
{
"name" : "http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm" ,
"refsource" : "CONFIRM" ,
"url" : "http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm"
} ,
{
"name" : "29957" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29957"
} ,
{
"name" : "FEDORA-2008-3979" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00951.html"
} ,
{
"name" : "FEDORA-2008-4947" ,
"refsource" : "FEDORA" ,
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00111.html"
}
]
}
}