Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://secunia.com/advisories/29792
http://libpng.sourceforge.net/Advisory-1.2.26.txt
http://www.vuxml.org/freebsd/57c705d6-12ae-11dd-bab7-0016179b2dd5.html
Insight
The following package is affected: png
CVE-2008-1382
libpng 1.0.6 through 1.0.32, 1.2.0 through 1.2.26, and 1.4.0beta01 through 1.4.0beta19 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG file with zero length 'unknown' chunks, which trigger an access of uninitialized memory.
Severity
Classification
-
CVE CVE-2008-1382 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities