CVE-2015-7981
Summary
| CVE | CVE-2015-7981 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2015-11-24 20:59:15 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | The png_convert_to_rfc1123 function in png.c in libpng 1.0.x before 1.0.64, 1.2.x before 1.2.54, and 1.4.x before 1.4.17 allows remote attackers to obtain sensitive process memory information via crafted tIME chunk data in an image file, which triggers an out-of-bounds read. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:N/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Canonical | Ubuntu Linux | 12.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 14.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 15.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 15.10 | All | All | All |
| Operating System | Debian | Debian Linux | 7.0 | All | All | All |
| Operating System | Debian | Debian Linux | 8.0 | All | All | All |
| Application | Libpng | Libpng | 1.0.0 | All | All | All |
| Application | Libpng | Libpng | 1.0.1 | All | All | All |
| Application | Libpng | Libpng | 1.0.10 | All | All | All |
| Application | Libpng | Libpng | 1.0.11 | All | All | All |
| Application | Libpng | Libpng | 1.0.12 | All | All | All |
| Application | Libpng | Libpng | 1.0.13 | All | All | All |
| Application | Libpng | Libpng | 1.0.14 | All | All | All |
| Application | Libpng | Libpng | 1.0.15 | All | All | All |
| Application | Libpng | Libpng | 1.0.16 | All | All | All |
| Application | Libpng | Libpng | 1.0.17 | All | All | All |
| Application | Libpng | Libpng | 1.0.18 | All | All | All |
| Application | Libpng | Libpng | 1.0.19 | All | All | All |
| Application | Libpng | Libpng | 1.0.2 | All | All | All |
| Application | Libpng | Libpng | 1.0.20 | All | All | All |
| Application | Libpng | Libpng | 1.0.21 | All | All | All |
| Application | Libpng | Libpng | 1.0.22 | All | All | All |
| Application | Libpng | Libpng | 1.0.23 | All | All | All |
| Application | Libpng | Libpng | 1.0.24 | All | All | All |
| Application | Libpng | Libpng | 1.0.25 | All | All | All |
| Application | Libpng | Libpng | 1.0.26 | All | All | All |
| Application | Libpng | Libpng | 1.0.27 | All | All | All |
| Application | Libpng | Libpng | 1.0.28 | All | All | All |
| Application | Libpng | Libpng | 1.0.29 | All | All | All |
| Application | Libpng | Libpng | 1.0.3 | All | All | All |
| Application | Libpng | Libpng | 1.0.30 | All | All | All |
| Application | Libpng | Libpng | 1.0.31 | All | All | All |
| Application | Libpng | Libpng | 1.0.32 | All | All | All |
| Application | Libpng | Libpng | 1.0.33 | All | All | All |
| Application | Libpng | Libpng | 1.0.34 | All | All | All |
| Application | Libpng | Libpng | 1.0.35 | All | All | All |
| Application | Libpng | Libpng | 1.0.37 | All | All | All |
| Application | Libpng | Libpng | 1.0.38 | All | All | All |
| Application | Libpng | Libpng | 1.0.39 | All | All | All |
| Application | Libpng | Libpng | 1.0.40 | All | All | All |
| Application | Libpng | Libpng | 1.0.41 | All | All | All |
| Application | Libpng | Libpng | 1.0.42 | All | All | All |
| Application | Libpng | Libpng | 1.0.43 | All | All | All |
| Application | Libpng | Libpng | 1.0.44 | All | All | All |
| Application | Libpng | Libpng | 1.0.45 | All | All | All |
| Application | Libpng | Libpng | 1.0.46 | All | All | All |
| Application | Libpng | Libpng | 1.0.47 | All | All | All |
| Application | Libpng | Libpng | 1.0.48 | All | All | All |
| Application | Libpng | Libpng | 1.0.5 | All | All | All |
| Application | Libpng | Libpng | 1.0.50 | All | All | All |
| Application | Libpng | Libpng | 1.0.51 | All | All | All |
| Application | Libpng | Libpng | 1.0.52 | All | All | All |
| Application | Libpng | Libpng | 1.0.53 | All | All | All |
| Application | Libpng | Libpng | 1.0.54 | All | All | All |
| Application | Libpng | Libpng | 1.0.55 | All | All | All |
| Application | Libpng | Libpng | 1.0.55 | rc01 | All | All |
| Application | Libpng | Libpng | 1.0.56 | All | All | All |
| Application | Libpng | Libpng | 1.0.56 | devel | All | All |
| Application | Libpng | Libpng | 1.0.57 | All | All | All |
| Application | Libpng | Libpng | 1.0.57 | rc01 | All | All |
| Application | Libpng | Libpng | 1.0.58 | All | All | All |
| Application | Libpng | Libpng | 1.0.59 | All | All | All |
| Application | Libpng | Libpng | 1.0.6 | All | All | All |
| Application | Libpng | Libpng | 1.0.60 | All | All | All |
| Application | Libpng | Libpng | 1.0.61 | All | All | All |
| Application | Libpng | Libpng | 1.0.62 | All | All | All |
| Application | Libpng | Libpng | 1.0.63 | All | All | All |
| Application | Libpng | Libpng | 1.0.7 | All | All | All |
| Application | Libpng | Libpng | 1.0.8 | All | All | All |
| Application | Libpng | Libpng | 1.0.9 | All | All | All |
| Application | Libpng | Libpng | 1.2.0 | All | All | All |
| Application | Libpng | Libpng | 1.2.1 | All | All | All |
| Application | Libpng | Libpng | 1.2.10 | All | All | All |
| Application | Libpng | Libpng | 1.2.11 | All | All | All |
| Application | Libpng | Libpng | 1.2.12 | All | All | All |
| Application | Libpng | Libpng | 1.2.13 | All | All | All |
| Application | Libpng | Libpng | 1.2.14 | All | All | All |
| Application | Libpng | Libpng | 1.2.15 | All | All | All |
| Application | Libpng | Libpng | 1.2.16 | All | All | All |
| Application | Libpng | Libpng | 1.2.17 | All | All | All |
| Application | Libpng | Libpng | 1.2.18 | All | All | All |
| Application | Libpng | Libpng | 1.2.19 | All | All | All |
| Application | Libpng | Libpng | 1.2.2 | All | All | All |
| Application | Libpng | Libpng | 1.2.20 | All | All | All |
| Application | Libpng | Libpng | 1.2.21 | All | All | All |
| Application | Libpng | Libpng | 1.2.22 | All | All | All |
| Application | Libpng | Libpng | 1.2.23 | All | All | All |
| Application | Libpng | Libpng | 1.2.24 | All | All | All |
| Application | Libpng | Libpng | 1.2.25 | All | All | All |
| Application | Libpng | Libpng | 1.2.26 | All | All | All |
| Application | Libpng | Libpng | 1.2.27 | All | All | All |
| Application | Libpng | Libpng | 1.2.28 | All | All | All |
| Application | Libpng | Libpng | 1.2.29 | All | All | All |
| Application | Libpng | Libpng | 1.2.3 | All | All | All |
| Application | Libpng | Libpng | 1.2.30 | All | All | All |
| Application | Libpng | Libpng | 1.2.31 | All | All | All |
| Application | Libpng | Libpng | 1.2.32 | All | All | All |
| Application | Libpng | Libpng | 1.2.33 | All | All | All |
| Application | Libpng | Libpng | 1.2.34 | All | All | All |
| Application | Libpng | Libpng | 1.2.35 | All | All | All |
| Application | Libpng | Libpng | 1.2.36 | All | All | All |
| Application | Libpng | Libpng | 1.2.37 | All | All | All |
| Application | Libpng | Libpng | 1.2.38 | All | All | All |
| Application | Libpng | Libpng | 1.2.39 | All | All | All |
| Application | Libpng | Libpng | 1.2.4 | All | All | All |
| Application | Libpng | Libpng | 1.2.40 | All | All | All |
| Application | Libpng | Libpng | 1.2.41 | All | All | All |
| Application | Libpng | Libpng | 1.2.42 | All | All | All |
| Application | Libpng | Libpng | 1.2.43 | All | All | All |
| Application | Libpng | Libpng | 1.2.43 | devel | All | All |
| Application | Libpng | Libpng | 1.2.44 | All | All | All |
| Application | Libpng | Libpng | 1.2.45 | All | All | All |
| Application | Libpng | Libpng | 1.2.45 | devel | All | All |
| Application | Libpng | Libpng | 1.2.46 | All | All | All |
| Application | Libpng | Libpng | 1.2.46 | devel | All | All |
| Application | Libpng | Libpng | 1.2.47 | All | All | All |
| Application | Libpng | Libpng | 1.2.47 | beta | All | All |
| Application | Libpng | Libpng | 1.2.48 | All | All | All |
| Application | Libpng | Libpng | 1.2.48 | betas | All | All |
| Application | Libpng | Libpng | 1.2.49 | All | All | All |
| Application | Libpng | Libpng | 1.2.5 | All | All | All |
| Application | Libpng | Libpng | 1.2.50 | All | All | All |
| Application | Libpng | Libpng | 1.2.51 | All | All | All |
| Application | Libpng | Libpng | 1.2.52 | All | All | All |
| Application | Libpng | Libpng | 1.2.53 | All | All | All |
| Application | Libpng | Libpng | 1.2.6 | All | All | All |
| Application | Libpng | Libpng | 1.2.7 | All | All | All |
| Application | Libpng | Libpng | 1.2.8 | All | All | All |
| Application | Libpng | Libpng | 1.2.9 | All | All | All |
| Application | Libpng | Libpng | 1.4.0 | All | All | All |
| Application | Libpng | Libpng | 1.4.1 | All | All | All |
| Application | Libpng | Libpng | 1.4.10 | All | All | All |
| Application | Libpng | Libpng | 1.4.11 | All | All | All |
| Application | Libpng | Libpng | 1.4.12 | All | All | All |
| Application | Libpng | Libpng | 1.4.13 | All | All | All |
| Application | Libpng | Libpng | 1.4.14 | All | All | All |
| Application | Libpng | Libpng | 1.4.15 | All | All | All |
| Application | Libpng | Libpng | 1.4.16 | All | All | All |
| Application | Libpng | Libpng | 1.4.2 | All | All | All |
| Application | Libpng | Libpng | 1.4.3 | All | All | All |
| Application | Libpng | Libpng | 1.4.4 | All | All | All |
| Application | Libpng | Libpng | 1.4.5 | All | All | All |
| Application | Libpng | Libpng | 1.4.6 | All | All | All |
| Application | Libpng | Libpng | 1.4.7 | All | All | All |
| Application | Libpng | Libpng | 1.4.8 | All | All | All |
| Application | Libpng | Libpng | 1.4.9 | All | All | All |
| Operating System | Redhat | Enterprise Linux Desktop | 6.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Desktop | 7.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Hpc Node | 6.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Hpc Node | 7.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Hpc Node Eus | 7.2 | All | All | All |
| Operating System | Redhat | Enterprise Linux Server | 6.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Server | 7.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Server Aus | 7.2 | All | All | All |
| Operating System | Redhat | Enterprise Linux Server Eus | 6.7.z | All | All | All |
| Operating System | Redhat | Enterprise Linux Server Eus | 7.2 | All | All | All |
| Operating System | Redhat | Enterprise Linux Workstation | 6.0 | All | All | All |
| Operating System | Redhat | Enterprise Linux Workstation | 7.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| [security-announce] openSUSE-SU-2015:2099-1: important: Security update | af854a3a-2127-422b-91ae-364da2661108 | lists.opensuse.org | |
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| oss-security - Re: CVE Requests for read out of bound in libpng | af854a3a-2127-422b-91ae-364da2661108 | www.openwall.com | |
| PNG reference library: libpng - Browse Files at SourceForge.net | af854a3a-2127-422b-91ae-364da2661108 | sourceforge.net | |
| PNG reference library: libpng - Browse Files at SourceForge.net | af854a3a-2127-422b-91ae-364da2661108 | sourceforge.net | Patch |
| LIBPNG: PNG reference library / Bugs / #241 a out of bound read in libpng 1.2.*-1.2.53 and libpng 1.4.* | af854a3a-2127-422b-91ae-364da2661108 | sourceforge.net | |
| oss-security - CVE Requests for read out of bound in libpng | af854a3a-2127-422b-91ae-364da2661108 | www.openwall.com | |
| libpng File Processing Buffer Overflow in png_convert_to_rfc1123() Lets Remote Users Execute Arbitrary Code - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| [SECURITY] Fedora 21 Update: libpng10-1.0.64-1.fc21 | af854a3a-2127-422b-91ae-364da2661108 | lists.fedoraproject.org | |
| openSUSE-SU-2015:2136-1: moderate: Security update for libpng12 | af854a3a-2127-422b-91ae-364da2661108 | lists.opensuse.org | |
| Debian -- Security Information -- DSA-3399-1 libpng | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| Oracle Solaris Bulletin - July 2016 | af854a3a-2127-422b-91ae-364da2661108 | www.oracle.com | |
| PNG reference library: libpng - Browse Files at SourceForge.net | af854a3a-2127-422b-91ae-364da2661108 | sourceforge.net | Exploit |
| [SECURITY] Fedora 22 Update: libpng10-1.0.64-1.fc22 | af854a3a-2127-422b-91ae-364da2661108 | lists.fedoraproject.org | |
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| Oracle Linux Bulletin - October 2015 | af854a3a-2127-422b-91ae-364da2661108 | www.oracle.com | |
| [SECURITY] Fedora 23 Update: libpng10-1.0.64-1.fc23 | af854a3a-2127-422b-91ae-364da2661108 | lists.fedoraproject.org | |
| USN-2815-1: libpng vulnerabilities | Ubuntu | af854a3a-2127-422b-91ae-364da2661108 | www.ubuntu.com | |
| libpng 'png_convert_to_rfc1123()' Function Out Of Bounds Read Memory Corruption Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| libpng: Multiple vulnerabilities (GLSA 201611-08) — Gentoo security | af854a3a-2127-422b-91ae-364da2661108 | security.gentoo.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.