openSUSE-SU-2022:10154-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2022:10154-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2022:10154-1
Published
2022-10-19T04:01:53Z
Modified
2022-10-19T04:01:53Z
Summary
Security update for pngcheck
Details

This update for pngcheck fixes the following issues:

pngcheck was updated to 3.0.3:

Version 3.0.1:

  • fixed a crash bug (and probable vulnerability) in large (MNG) LOOP chunks

Version 3.0.2:

  • fixed a divide-by-zero crash bug (and probable vulnerability) in interlaced images with extra compressed data beyond the nominal end of the image data (found by 'chiba of topsec alpha lab')
References

Affected packages

SUSE:Package Hub 15 SP4 / pngcheck

Package

Name
pngcheck
Purl
pkg:rpm/suse/pngcheck&distro=SUSE%20Package%20Hub%2015%20SP4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.0.3-bp154.2.3.1

Ecosystem specific

{
    "binaries":  [
        {
            "pngcheck":  "3.0.3-bp154.2.3.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2022:10154-1.json"

openSUSE:Leap 15.4 / pngcheck

Package

Name
pngcheck
Purl
pkg:rpm/opensuse/pngcheck&distro=openSUSE%20Leap%2015.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.0.3-bp154.2.3.1

Ecosystem specific

{
    "binaries":  [
        {
            "pngcheck":  "3.0.3-bp154.2.3.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2022:10154-1.json"