Description: Two vulnerabilities have been reported in libpng, which potentially can be exploited by malicious people to compromise a user's system.
A boundary error in the "png_handle_tRNS()" function and an integer overflow in the "png_read_png()" function can be exploited to cause buffer overflows by tricking a user into viewing a specially crafted PNG image with an application linked to the vulnerable library.
Successful exploitation may allow execution of arbitrary code.
The vulnerabilities in this advisory are related to: SA12219
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.