1
Candidate: CVE-2014-0333
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0333
5
http://www.kb.cert.org/vuls/id/684412
6
https://sourceforge.net/projects/libpng/files/libpng16/patch-libpng16-vu684412.diff
8
The png_push_read_chunk function in pngpread.c in the progressive decoder
9
in libpng 1.6.x through 1.6.9 allows remote attackers to cause a denial of
10
service (infinite loop and CPU consumption) via an IDAT chunk with a length
15
jdstrand> libpng1.6 1.6.8-2 is affected, but not in the Ubuntu archive
22
upstream_libpng: needs-triage
23
lucid_libpng: not-affected
24
precise_libpng: not-affected
25
quantal_libpng: not-affected
26
saucy_libpng: not-affected
27
devel_libpng: not-affected