Integer overflow in the rwpngreadimage24_libpng function in rwpng.c in pngquant 2.7.0 allows remote attackers to have unspecified impact via a crafted PNG file, which triggers a buffer overflow.
{ "ubuntu_priority": "medium" }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "pngquant", "binary_version": "2.5.0-2" }, { "binary_name": "pngquant-dbgsym", "binary_version": "2.5.0-2" } ], "ubuntu_priority": "medium" }