~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
PublicDateAtUSN: 2012-08-13
Candidate: CVE-2012-3425
PublicDate: 2012-08-13
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3425
 http://www.ubuntu.com/usn/usn-2815-1
Description:
 The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before
 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10
 allows remote attackers to cause a denial of service (out-of-bounds read)
 via a large avail_in field value in a PNG image.
Ubuntu-Description:
Notes:
 tyhicks> Per Debian BTS, upstream removed the vulnerable function
  (png_push_read_zTXt) in 1.2.48.
 jdstrand> firefox and thunderbird are not affected
Bugs:
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=668082
Priority: low
Discovered-by: Mikulas Patocka
Assigned-to: mdeslaur

Patches_libpng:
 vendor: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=668082#15
upstream_libpng: released (1.2.49-1)
hardy_libpng: ignored (reached end-of-life)
lucid_libpng: ignored (reached end-of-life)
natty_libpng: ignored (reached end-of-life)
oneiric_libpng: ignored (reached end-of-life)
precise_libpng: released (1.2.46-3ubuntu4.1)
quantal_libpng: not-affected (1.2.49-1ubuntu1)
raring_libpng: not-affected (1.2.49-1ubuntu1)
saucy_libpng: not-affected (1.2.49-1ubuntu1)
trusty_libpng: not-affected (1.2.49-1ubuntu1)
utopic_libpng: not-affected (1.2.49-1ubuntu1)
vivid_libpng: not-affected (1.2.49-1ubuntu1)
vivid/stable-phone-overlay_libpng: not-affected (1.2.49-1ubuntu1)
vivid/ubuntu-core_libpng: not-affected (1.2.49-1ubuntu1)
wily_libpng: not-affected (1.2.49-1ubuntu1)
devel_libpng: not-affected (1.2.49-1ubuntu1)


Patches_firefox:
upstream_firefox: needs-triage
hardy_firefox: ignored (reached end-of-life)
lucid_firefox: not-affected
natty_firefox: not-affected
oneiric_firefox: not-affected
precise_firefox: not-affected
quantal_firefox: not-affected
raring_firefox: not-affected
saucy_firefox: not-affected
trusty_firefox: not-affected
utopic_firefox: not-affected
vivid_firefox: not-affected
wily_firefox: not-affected
devel_firefox: not-affected


Patches_thunderbird:
upstream_thunderbird: needs-triage
hardy_thunderbird: ignored (reached end-of-life)
lucid_thunderbird: not-affected
natty_thunderbird: not-affected
oneiric_thunderbird: not-affected
precise_thunderbird: not-affected
quantal_thunderbird: not-affected
raring_thunderbird: not-affected
saucy_thunderbird: not-affected
trusty_thunderbird: not-affected
utopic_thunderbird: not-affected
vivid_thunderbird: not-affected
wily_thunderbird: not-affected
devel_thunderbird: not-affected


Patches_chromium-browser:
upstream_chromium-browser: needs-triage
hardy_chromium-browser: DNE
lucid_chromium-browser: not-affected (uses system libpng)
natty_chromium-browser: not-affected (uses system libpng)
oneiric_chromium-browser: not-affected (uses system libpng)
precise_chromium-browser: not-affected (uses system libpng)
quantal_chromium-browser: not-affected (uses system libpng)
raring_chromium-browser: not-affected (uses system libpng)
saucy_chromium-browser: not-affected (uses system libpng)
trusty_chromium-browser: not-affected (uses system libpng)
utopic_chromium-browser: not-affected (uses system libpng)
vivid_chromium-browser: not-affected (uses system libpng)
wily_chromium-browser: not-affected (uses system libpng)
devel_chromium-browser: not-affected (uses system libpng)