Bug ID 1215937
Summary VUL-0: CVE-2023-43907: optipng: global buffer overflow via the 'buffer' variable at gifread.c
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.6
Hardware Other
URL https://smash.suse.de/issue/380479/
OS Other
Status NEW
Severity Major
Priority P5 - None
Component Security
Assignee pgajdos@suse.com
Reporter smash_bz@suse.de
QA Contact security-team@suse.de
CC gabriele.sonnu@suse.com
Target Milestone ---
Found By Security Response Team
Blocker ---

OptiPNG v0.7.7 was discovered to contain a global buffer overflow via the
'buffer' variable at gifread.c.

References:
https://github.com/Frank-Z7/z-vulnerabilitys/blob/main/optipng-global-buffer-overflow1/optipng-global-buffer-overflow1.md
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-43907


You are receiving this mail because: