CVE-2019-7317
published 2019-02-04CVE-2019-7317: png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
PriorityP430medium5.3CVSS 3.1
AVNACHPRNUIRSUCNINAH
EPSS
9.39%
94.9th percentile
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
Affected
61 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | firefox | < firefox 67.0-2 (sid) | firefox 67.0-2 (sid) |
| debian | firefox-esr | < firefox 67.0-2 (sid) | firefox 67.0-2 (sid) |
| debian | libpng1.6 | < firefox 67.0-2 (sid) | firefox 67.0-2 (sid) |
| debian | thunderbird | < firefox 67.0-2 (sid) | firefox 67.0-2 (sid) |
| hp | xp7_command_view | < 8.7.0-00 | 8.7.0-00 |
| hpe | xp7_command_view_advanced_edition_suite | < 8.7.0-00 | 8.7.0-00 |
| libpng | libpng | >= 1.6.0 < 1.6.37 | 1.6.37 |
| mozilla | firefox | >= 0 < 67.0+build2-0ubuntu0.16.04.1 | 67.0+build2-0ubuntu0.16.04.1 |
| mozilla | firefox | >= 0 < 67.0.2+build2-0ubuntu0.16.04.1 | 67.0.2+build2-0ubuntu0.16.04.1 |
| mozilla | firefox | >= 0 < 67.0.1+build1-0ubuntu0.16.04.1 | 67.0.1+build1-0ubuntu0.16.04.1 |
| mozilla | firefox | >= 0 < 67.0+build2-0ubuntu0.18.04.1 | 67.0+build2-0ubuntu0.18.04.1 |
| mozilla | firefox | >= 0 < 67.0.2+build2-0ubuntu0.18.04.1 | 67.0.2+build2-0ubuntu0.18.04.1 |
| mozilla | firefox | >= 0 < 67.0.1+build1-0ubuntu0.18.04.1 | 67.0.1+build1-0ubuntu0.18.04.1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0-1 | 1:60.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0-1 | 1:60.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0-1 | 1:60.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0-1 | 1:60.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0+build1-0ubuntu0.16.04.1 | 1:60.7.0+build1-0ubuntu0.16.04.1 |
| mozilla | thunderbird | >= 0 < 1:60.7.0+build1-0ubuntu0.18.04.1 | 1:60.7.0+build1-0ubuntu0.18.04.1 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:N/I:N/A:P
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian5.3MEDIUM
vendor_msrc5.3MEDIUM
vendor_oracle5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Oracle
Oracle Oracle Supply Chain Risk Matrix: Security (libpng) — CVE-2019-7317
vendor_oracle·2023-01-15·CVSS 5.3
CVE-2019-7317 [MEDIUM] Oracle Oracle Supply Chain Risk Matrix: Security (libpng) — CVE-2019-7317
Oracle Oracle Supply Chain Risk Matrix: Security (libpng) vulnerability
CVE: CVE-2019-7317
CVSS: 5.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2023 (JAN 2023)
Oracle
Oracle Oracle Hyperion Risk Matrix: Installation and Configuration (libpng) — CVE-2019-7317
vendor_oracle·2021-10-15·CVSS 5.3
CVE-2019-7317 [MEDIUM] Oracle Oracle Hyperion Risk Matrix: Installation and Configuration (libpng) — CVE-2019-7317
Oracle Oracle Hyperion Risk Matrix: Installation and Configuration (libpng) vulnerability
CVE: CVE-2019-7317
CVSS: 5.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2021 (OCT 2021)
Oracle
Oracle Oracle MySQL Risk Matrix: Workbench (libpng) — CVE-2019-7317
vendor_oracle·2021-04-15·CVSS 5.3
CVE-2019-7317 [MEDIUM] Oracle Oracle MySQL Risk Matrix: Workbench (libpng) — CVE-2019-7317
Oracle Oracle MySQL Risk Matrix: Workbench (libpng) vulnerability
CVE: CVE-2019-7317
CVSS: 5.3
Protocol: MySQL Workbench
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2021 (APR 2021)
Ubuntu
OpenJDK 8 vulnerabilities
vendor_ubuntu·2019-07-31·CVSS 5.1
CVE-2019-2745 [MEDIUM] OpenJDK 8 vulnerabilities
Title: OpenJDK 8 vulnerabilities
Summary: Several security issues were fixed in OpenJDK.
Keegan Ryan discovered that the ECC implementation in OpenJDK was not
sufficiently resilient to side-channel attacks. An attacker could possibly
use this to expose sensitive information. (CVE-2019-2745)
It was discovered that OpenJDK did not sufficiently validate serial streams
before deserializing suppressed exceptions in some situations. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service. (CVE-2019-2762)
It was discovered that in some situations OpenJDK did not properly bound
the amount of memory allocated during object deserialization. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denia
Ubuntu
OpenJDK 11 vulnerabilities
vendor_ubuntu·2019-07-31·CVSS 5.3
CVE-2019-2762 [MEDIUM] OpenJDK 11 vulnerabilities
Title: OpenJDK 11 vulnerabilities
Summary: Several security issues were fixed in OpenJDK 11.
It was discovered that OpenJDK did not sufficiently validate serial streams
before deserializing suppressed exceptions in some situations. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service. (CVE-2019-2762)
It was discovered that in some situations OpenJDK did not properly bound
the amount of memory allocated during object deserialization. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service (excessive memory consumption). (CVE-2019-2769)
It was discovered that OpenJDK did not properly restrict privileges in
certain situations. An attacker could use this to specially constru
Ubuntu
Firefox regression
vendor_ubuntu·2019-06-14·CVSS 9.8
[CRITICAL] Firefox regression
Title: Firefox regression
Summary: USN-3991-2 caused a regression in Firefox
USN-3991-1 fixed vulnerabilities in Firefox, and USN-3991-2 fixed a
subsequent regression. The update caused an additional regression that
resulted in Firefox failing to load correctly after executing it in safe
mode. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692,
Ubuntu
Firefox regression
vendor_ubuntu·2019-06-06·CVSS 9.8
[CRITICAL] Firefox regression
Title: Firefox regression
Summary: USN-3991-1 caused a regression in Firefox.
USN-3991-1 fixed vulnerabilities in Firefox. The update caused a
regression which resulted in issues when upgrading between Ubuntu
releases. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-11695, CVE-2019-11696, CVE-2019-11699, CVE-2019-11
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2019-05-28·CVSS 9.8
CVE-2018-18511 [CRITICAL] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
bypass same-origin protections, or execute arbitrary code.
(CVE-2019-18511, CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-9797, CVE-2019-9800, CVE-2019-9817, CVE-2019-9819, CVE-2019-9820)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted message, an attacker could
potentially exploit these to cause a denial of service, or execute
arbitrary code. (CVE-2019-5798, CVE-2019-7317)
A type confusion bug was dis
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2019-05-21·CVSS 9.8
CVE-2019-11691 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-11695, CVE-2019-11696, CVE-2019-11699, CVE-2019-11701,
CVE-2019-7317, CVE-2019-9800, CVE-2019-9814, CVE-2019-9817, CVE-2019-9819,
CVE-2019-9820, CVE-2019-9821)
It was discovered that pressing certain key combinations could bypass
Ubuntu
libpng vulnerability
vendor_ubuntu·2019-04-30
CVE-2019-7317 libpng vulnerability
Title: libpng vulnerability
Summary: libpng be made to crash or run programs if it opened a specially crafted
file.
It was discovered that libpng incorrectly handled certain memory
operations. If a user or automated system were tricked into opening a
specially crafted PNG file, a remote attacker could use this issue to
cause libpng to crash, resulting in a denial of service, or possibly
execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
vendor_msrc·2019-02-12·CVSS 5.3
CVE-2019-7317 [MEDIUM] CWE-416 png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
mitre: mitre
Custo
Red Hat
libpng: use-after-free in png_image_free in png.c
vendor_redhat·2019-01-25·CVSS 5.3
CVE-2019-7317 [MEDIUM] CWE-400 libpng: use-after-free in png_image_free in png.c
libpng: use-after-free in png_image_free in png.c
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
A vulnerability was found in libpng where a use-after-free issue exists in the png_image_free function within png.c. This vulnerability can be exploited by persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to cause a denial of service.
Statement: In general, this flaw cannot be exploited through email in Thunderbird because scripting is disabled when reading mail, but it is potentially a risk in browser or browser-like contexts.
Package: libpng (Red Hat Enterprise Linux 5) - Not affected
Package: libpng (Red Hat Enterprise Linux 6) - Not affec
Debian
CVE-2019-7317: firefox - png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free becau...
vendor_debian·2019·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317: firefox - png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free becau...
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
Scope: local
sid: resolved (fixed in 67.0-2)
GHSA
GHSA-m96g-x499-p5f9: png_image_free in png
ghsa_unreviewed·2022-04-30
CVE-2019-7317 [MEDIUM] CWE-416 GHSA-m96g-x499-p5f9: png_image_free in png
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
OSV
openjdk-8 vulnerabilities
osv·2019-07-31·CVSS 5.1
CVE-2019-2745 [MEDIUM] openjdk-8 vulnerabilities
openjdk-8 vulnerabilities
Keegan Ryan discovered that the ECC implementation in OpenJDK was not
sufficiently resilient to side-channel attacks. An attacker could possibly
use this to expose sensitive information. (CVE-2019-2745)
It was discovered that OpenJDK did not sufficiently validate serial streams
before deserializing suppressed exceptions in some situations. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service. (CVE-2019-2762)
It was discovered that in some situations OpenJDK did not properly bound
the amount of memory allocated during object deserialization. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service (excessive memory consumption). (CVE-2019-2769)
It
OSV
openjdk-lts vulnerabilities
osv·2019-07-31·CVSS 5.3
CVE-2019-2762 [MEDIUM] openjdk-lts vulnerabilities
openjdk-lts vulnerabilities
It was discovered that OpenJDK did not sufficiently validate serial streams
before deserializing suppressed exceptions in some situations. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service. (CVE-2019-2762)
It was discovered that in some situations OpenJDK did not properly bound
the amount of memory allocated during object deserialization. An attacker
could use this to specially craft an object that, when deserialized, would
cause a denial of service (excessive memory consumption). (CVE-2019-2769)
It was discovered that OpenJDK did not properly restrict privileges in
certain situations. An attacker could use this to specially construct an
untrusted Java application or applet that could escape sandb
OSV
firefox regression
osv·2019-06-14·CVSS 9.8
[CRITICAL] firefox regression
firefox regression
USN-3991-1 fixed vulnerabilities in Firefox, and USN-3991-2 fixed a
subsequent regression. The update caused an additional regression that
resulted in Firefox failing to load correctly after executing it in safe
mode. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-11695, CVE-2019-11696, CVE-2019-1
OSV
firefox regression
osv·2019-06-06·CVSS 9.8
[CRITICAL] firefox regression
firefox regression
USN-3991-1 fixed vulnerabilities in Firefox. The update caused a
regression which resulted in issues when upgrading between Ubuntu
releases. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-11695, CVE-2019-11696, CVE-2019-11699, CVE-2019-11701,
CVE-2019-7317, CVE-2019-9800, CVE-2019-9814, CVE-2019-9
OSV
thunderbird vulnerabilities
osv·2019-05-28·CVSS 9.8
CVE-2019-18511 [CRITICAL] thunderbird vulnerabilities
thunderbird vulnerabilities
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
bypass same-origin protections, or execute arbitrary code.
(CVE-2019-18511, CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-9797, CVE-2019-9800, CVE-2019-9817, CVE-2019-9819, CVE-2019-9820)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted message, an attacker could
potentially exploit these to cause a denial of service, or execute
arbitrary code. (CVE-2019-5798, CVE-2019-7317)
A type confusion bug was discovered with object groups and UnboxedObjects.
If a user were tricke
OSV
firefox vulnerabilities
osv·2019-05-21·CVSS 9.8
CVE-2019-11691 [CRITICAL] firefox vulnerabilities
firefox vulnerabilities
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, spoof the browser
UI, trick the user in to launching local executable binaries, obtain
sensitive information, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11691, CVE-2019-11692, CVE-2019-11693,
CVE-2019-11695, CVE-2019-11696, CVE-2019-11699, CVE-2019-11701,
CVE-2019-7317, CVE-2019-9800, CVE-2019-9814, CVE-2019-9817, CVE-2019-9819,
CVE-2019-9820, CVE-2019-9821)
It was discovered that pressing certain key combinations could bypass
addon installation prompt delays. If a user opened a specially crafted
website, an attacker could potentially ex
OSV
CVE-2019-7317: png_image_free in png
osv·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317: png_image_free in png
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
No detection rules found.
No public exploits indexed.
Bugzilla
libpng use-after-free in png_image_free
bugzilla·2019-04-08·CVSS 5.3
CVE-2019-7317 [MEDIUM] libpng use-after-free in png_image_free
libpng use-after-free in png_image_free
Assigned CVE-2019-7317. Pretty trivial patch to backport.
https://github.com/glennrp/libpng/commit/9c0d5c77bf5bf2d7c1e11f388de40a70e0191550
Discussion:
Created attachment 9056639
Bug 1542829 - Backport an upstream libpng patch. r=aosmond
---
Here's the upstream CVE: https://nvd.nist.gov/vuln/detail/CVE-2019-7317
---
Comment on attachment 9056639
Bug 1542829 - Backport an upstream libpng patch. r=aosmond
### Security Approval Request
* **How easily could an exploit be constructed based on the patch?**: Unknown, but it's a publicly-disclosed bug so we should assume the worst.
* **Do comments in the patch, the check-in comment, or tests included in the patch paint a bulls-eye on the security problem?**: No
* **Which older supported branches are
Bugzilla
CVE-2019-7317 libpng: use-after-free in png_image_free in png.c
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng: use-after-free in png_image_free in png.c
CVE-2019-7317 libpng: use-after-free in png_image_free in png.c
A vulnerability was found in libpng 1.6.36. The function png_image_free in png.c has a use-after-free because png_image_free_function is called under png_safe_execute.
References:
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=12803
https://github.com/glennrp/libpng/issues/275
Discussion:
Created libpng tracking bugs for this issue:
Affects: fedora-all [bug 1672411]
Created libpng10 tracking bugs for this issue:
Affects: epel-6 [bug 1672410]
Affects: fedora-all [bug 1672414]
Created libpng12 tracking bugs for this issue:
Affects: fedora-all [bug 1672415]
Created libpng15 tracking bugs for this issue:
Affects: fedora-all [bug 1672416]
Created mingw-libpng tracking bugs for this issue:
Affects: epel-7 [b
Bugzilla
CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [epel-7]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [epel-7]
CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for
Bugzilla
CVE-2019-7317 libpng: use-after-free in png_image_free in png.c [fedora-all]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng: use-after-free in png_image_free in png.c [fedora-all]
CVE-2019-7317 libpng: use-after-free in png_image_free in png.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions
Bugzilla
CVE-2019-7317 libpng15: libpng: use-after-free in png_image_free in png.c [fedora-all]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng15: libpng: use-after-free in png_image_free in png.c [fedora-all]
CVE-2019-7317 libpng15: libpng: use-after-free in png_image_free in png.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [fedora-all]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [fedora-all]
CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2019-7317 libpng12: libpng: use-after-free in png_image_free in png.c [fedora-all]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng12: libpng: use-after-free in png_image_free in png.c [fedora-all]
CVE-2019-7317 libpng12: libpng: use-after-free in png_image_free in png.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [fedora-all]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [fedora-all]
CVE-2019-7317 mingw-libpng: libpng: use-after-free in png_image_free in png.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppo
Bugzilla
CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [epel-6]
bugzilla·2019-02-04·CVSS 5.3
CVE-2019-7317 [MEDIUM] CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [epel-6]
CVE-2019-7317 libpng10: libpng: use-after-free in png_image_free in png.c [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to for the
arXiv
LibDB: An Effective and Efficient Framework for Detecting Third-Party Libraries in Binaries
arxiv_fulltext·2022-04-21
LibDB: An Effective and Efficient Framework for Detecting Third-Party Libraries in Binaries
LibDB: An Effective and Efficient Framework for Detecting Third-Party Libraries in Binaries
Wei Tang
[email protected]
Work is done during internship at Microsoft Research Asia.
School of Software, Tsinghua University
Beijing
China
Yanlin Wang
Corresponding author.
[email protected]
Microsoft Research
Beijing
China
Hongyu Zhang
[email protected]
The University of Newcastle
Newcastle
Australia
Shi Han
[email protected]
Microsoft Research
Beijing
China
Ping Luo
[email protected]
School of Software, Tsinghua University
Beijing
China
Dongmei Zhang
[email protected]
Microsoft Research
Beijing
China
Tang, et al.
## Abstract
Third-party libraries (TPLs) are reused frequently in software applications for reducing development cost. Howeve
arXiv
Tightly Seal Your Sensitive Pointers with PACTight
arxiv_fulltext·2022-03-28
Tightly Seal Your Sensitive Pointers with PACTight
Tightly Seal Your Sensitive Pointers with
Mohannad Ismail
Andrew Quach
Christopher Jelesnianski
Yeongjin Jang
Changwoo Min
Virginia Tech
Oregon State University
## Abstract
ARM is becoming more popular in desktops and data centers, opening a new
realm in terms of security attacks against ARM.
ARM has released
Pointer Authentication, a new hardware security feature that is intended
to ensure pointer integrity with cryptographic primitives.
In this paper, we utilize Pointer Authentication (PA) to build a novel scheme to
completely prevent any misuse of security-sensitive pointers. We propose
to tightly seal these pointers.
utilizes a strong and
unique modifier that addresses the current issues with the state-of-the-art
PA defense mechanisms.
We implement four
defenses based on the mec
arXiv
PTAuth: Temporal Memory Safety via Robust Points-to Authentication
arxiv_fulltext·2020-10-26
PTAuth: Temporal Memory Safety via Robust Points-to Authentication
: Temporal Memory Safety via Robust Points-to Authentication
Reza Mirzazade Farkhani
Northeastern University
[email protected]
Mansour Ahmadi
Northeastern University
[email protected]
Long Lu
Northeastern University
[email protected]
gobble
page1
## Abstract
Temporal memory corruptions are commonly exploited software vulnerabilities that
can lead to powerful attacks. Despite significant progress made by decades of
research on mitigation techniques, existing countermeasures fall short due to
either limited coverage or overly high overhead. Furthermore, they require
external mechanisms (e.g., spatial memory safety) to protect their metadata.
Otherwise, their protection can be bypassed or disabled.
To address these limitations, we present robust points-to
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00029.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00084.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-08/msg00038.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-08/msg00044.htmlhttp://packetstormsecurity.com/files/152561/Slackware-Security-Advisory-libpng-Updates.htmlhttp://www.securityfocus.com/bid/108098https://access.redhat.com/errata/RHSA-2019:1265https://access.redhat.com/errata/RHSA-2019:1267https://access.redhat.com/errata/RHSA-2019:1269https://access.redhat.com/errata/RHSA-2019:1308https://access.redhat.com/errata/RHSA-2019:1309https://access.redhat.com/errata/RHSA-2019:1310https://access.redhat.com/errata/RHSA-2019:2494https://access.redhat.com/errata/RHSA-2019:2495https://access.redhat.com/errata/RHSA-2019:2585https://access.redhat.com/errata/RHSA-2019:2590https://access.redhat.com/errata/RHSA-2019:2592https://access.redhat.com/errata/RHSA-2019:2737https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=12803https://github.com/glennrp/libpng/issues/275https://lists.debian.org/debian-lts-announce/2019/05/msg00032.htmlhttps://lists.debian.org/debian-lts-announce/2019/05/msg00038.htmlhttps://seclists.org/bugtraq/2019/Apr/30https://seclists.org/bugtraq/2019/Apr/36https://seclists.org/bugtraq/2019/May/56https://seclists.org/bugtraq/2019/May/59https://seclists.org/bugtraq/2019/May/67https://security.gentoo.org/glsa/201908-02https://security.netapp.com/advisory/ntap-20190719-0005/https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03977en_ushttps://usn.ubuntu.com/3962-1/https://usn.ubuntu.com/3991-1/https://usn.ubuntu.com/3997-1/https://usn.ubuntu.com/4080-1/https://usn.ubuntu.com/4083-1/https://www.debian.org/security/2019/dsa-4435https://www.debian.org/security/2019/dsa-4448https://www.debian.org/security/2019/dsa-4451https://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuoct2021.htmlhttps://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00029.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00084.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-08/msg00038.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-08/msg00044.htmlhttp://packetstormsecurity.com/files/152561/Slackware-Security-Advisory-libpng-Updates.htmlhttp://www.securityfocus.com/bid/108098https://access.redhat.com/errata/RHSA-2019:1265https://access.redhat.com/errata/RHSA-2019:1267https://access.redhat.com/errata/RHSA-2019:1269https://access.redhat.com/errata/RHSA-2019:1308https://access.redhat.com/errata/RHSA-2019:1309https://access.redhat.com/errata/RHSA-2019:1310https://access.redhat.com/errata/RHSA-2019:2494https://access.redhat.com/errata/RHSA-2019:2495https://access.redhat.com/errata/RHSA-2019:2585https://access.redhat.com/errata/RHSA-2019:2590https://access.redhat.com/errata/RHSA-2019:2592https://access.redhat.com/errata/RHSA-2019:2737https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=12803https://github.com/glennrp/libpng/issues/275https://lists.debian.org/debian-lts-announce/2019/05/msg00032.htmlhttps://lists.debian.org/debian-lts-announce/2019/05/msg00038.htmlhttps://seclists.org/bugtraq/2019/Apr/30https://seclists.org/bugtraq/2019/Apr/36https://seclists.org/bugtraq/2019/May/56https://seclists.org/bugtraq/2019/May/59https://seclists.org/bugtraq/2019/May/67https://security.gentoo.org/glsa/201908-02https://security.netapp.com/advisory/ntap-20190719-0005/https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03977en_ushttps://usn.ubuntu.com/3962-1/https://usn.ubuntu.com/3991-1/https://usn.ubuntu.com/3997-1/https://usn.ubuntu.com/4080-1/https://usn.ubuntu.com/4083-1/https://www.debian.org/security/2019/dsa-4435https://www.debian.org/security/2019/dsa-4448https://www.debian.org/security/2019/dsa-4451https://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuoct2021.htmlhttps://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
2019-02-04
Published