CVE-2016-2191
13.04.2016, 16:59
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image.Enginsight
| Vendor | Product | Version |
|---|---|---|
| optipng | optipng | 0.7.2 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 15.04 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| opensuse | leap | 42.1 |
| opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References