blob: 17adceb914961407be7ff1971dc426123d0824d0 (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
|
<define-tag description>LTS security update</define-tag>
<define-tag moreinfo>
<ul>
<li><a href="https://security-tracker.debian.org/tracker/CVE-2015-8472">CVE-2015-8472</a>
<p>update incomplete patch for <a href="https://security-tracker.debian.org/tracker/CVE-2015-8126">CVE-2015-8126</a></p></li>
<li><a href="https://security-tracker.debian.org/tracker/CVE-2015-8540">CVE-2015-8540</a>
<p>underflow read in png_check_keyword in pngwutil.c</p></li>
<li><a href="https://security-tracker.debian.org/tracker/CVE-2012-3425">CVE-2012-3425</a>
<p>The png_push_read_zTXt function in pngpread.c in libpng 1.0.x
before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and
1.5.x before 1.5.10 allows remote attackers to cause a denial
of service (out-of-bounds read) via a large avail_in field value
in a PNG image.</p></li>
</ul>
</define-tag>
# do not modify the following line
#include "$(ENGLISHDIR)/lts/security/2015/dla-375.data"
# $Id$
|