[Png-mng-security] security bug in png_handle_tRNS

Tom Lane tgl at sss.pgh.pa.us
Wed May 16 21:39:57 UTC 2007


Glenn Randers-Pehrson <glennrp at comcast.net> writes:
> Here is a draft advisory.  It's pretty much the same as my original
> announcement except that the fix is presented as a patch.  Tom, I think
> "grayscale" is correct.

Well, I can crash firefox with a palette image and not with a grayscale
one ...

			regards, tom lane



More information about the png-mng-security-archive mailing list