FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

cups -- potential buffer overflow in PNG reading code

Affected packages
cups-base < 1.3.9_2

Details

VuXML ID 87106b67-be13-11dd-a578-0030843d3802
Discovery 2008-10-17
Entry 2008-11-29
Modified 2008-12-25

CUPS reports:

The PNG image reading code did not validate the image size properly, leading to a potential buffer overflow (STR #2974)

References

CVE Name CVE-2008-5286
URL http://svn.easysw.com/public/cups/trunk/CHANGES-1.3.txt
URL http://www.cups.org/str.php?L2974
URL http://www.openwall.com/lists/oss-security/2008/11/25/2