Multiple Image Editing Applications .PNG Format Handling Remote Buffer Overflow Vulnerability

To exploit this issue, an attacker must entice an unsuspecting user to view a maliciously crafted PNG file.

Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following example exploit is available:


 

Privacy Statement
Copyright 2010, SecurityFocus