Bug 17022 - libpng12 new security issue CVE-2015-7981
Summary: libpng12 new security issue CVE-2015-7981
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 5
Hardware: i586 Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL: http://lwn.net/Vulnerabilities/662790/
Whiteboard: MGA5-32-OK MGA5-64-OK advisory
Keywords: validated_update
Depends on:
Blocks:
 
Reported: 2015-10-26 17:29 CET by David Walser
Modified: 2015-11-02 21:03 CET (History)
3 users (show)

See Also:
Source RPM: libpng12-1.2.52-1.mga5.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2015-10-26 17:29:33 CET
A CVE was assigned for an out-of-bounds read issue fixed upstream in libpng12:
http://openwall.com/lists/oss-security/2015/10/26/3

Patched packages uploaded for Mageia 5 and Cauldron.

Advisory:
========================

Updated libpng12 packages fix security vulnerability:

An out-of-bounds read in png_convert_to_rfc1123() in png.c in libpng 1.2.x
before 1.2.54 could potentially be exploited by a crafted PNG file to leak
information from an application's memory (CVE-2015-7981).

References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7981
http://openwall.com/lists/oss-security/2015/10/26/3
========================

Updated packages in core/updates_testing:
========================
libpng12_0-1.2.52-1.1.mga5
libpng12-devel-1.2.52-1.1.mga5

from libpng12-1.2.52-1.1.mga5.src.rpm

Reproducible: 

Steps to Reproduce:
Comment 1 Brian Rockwell 2015-10-27 23:48:01 CET
Installed libpng12_0-1.2.52.1.1.mga5 (i586).  Installs fine.  Not finding any applications that still use that version.

Let me know if someone has one.

Brian

CC: (none) => brtians1

Comment 2 David Walser 2015-10-28 02:12:11 CET
According to urpmq --whatrequires libpng12_0, pngtools and xv still use it.
Comment 3 Brian Rockwell 2015-10-28 16:18:09 CET
I'll see about trying out one of those tonight.  And thanks for the command.
Comment 4 Brian Rockwell 2015-10-29 00:50:39 CET
Installed xv and it picked up the libpng12 library.  

Exported image to png, edited it with xv and saved it out.  No issues.

Linux localhost 4.1.8-desktop-1.mga5 #1 SMP Sun Sep 20 12:33:42 UTC 2015 i686 i686 i686 GNU/Linux

[root@localhost brian]# urpmi libpng12_0
Package libpng12_0-1.2.52-1.1.mga5.i586 is already installed

Whiteboard: (none) => MGA5-32-OK

Dave Hodgins 2015-10-29 05:59:09 CET

Keywords: (none) => validated_update
Whiteboard: MGA5-32-OK => MGA5-32-OK advisory
CC: (none) => davidwhodgins, sysadmin-bugs

Comment 5 Brian Rockwell 2015-10-30 02:13:00 CET
Installed on 64 bit VM.  Worked fine there.


Brian
Brian Rockwell 2015-10-30 02:13:25 CET

Whiteboard: MGA5-32-OK advisory => MGA5-32-OK MGA5-64-OK advisory

Comment 6 Mageia Robot 2015-10-30 21:12:07 CET
An update for this issue has been pushed to Mageia Updates repository.

http://advisories.mageia.org/MGASA-2015-0417.html

Status: NEW => RESOLVED
Resolution: (none) => FIXED

David Walser 2015-11-02 21:03:24 CET

URL: (none) => http://lwn.net/Vulnerabilities/662790/


Note You need to log in before you can comment on or make changes to this bug.