[Bug 291410] security/vuxml: Out of bounds read in graphics/png

From: <bugzilla-noreply_at_freebsd.org>
Date: Fri, 05 Dec 2025 02:39:03 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=291410

            Bug ID: 291410
           Summary: security/vuxml: Out of bounds read in graphics/png
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-bugs@FreeBSD.org
          Reporter: polarian@polarian.dev
                CC: desktop@FreeBSD.org, ports-secteam@FreeBSD.org
                CC: desktop@FreeBSD.org, ports-secteam@FreeBSD.org

Created attachment 265865
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=265865&action=edit
patch

Adds CVE-2025-66293 to vuxml. See [1] for more details.

[1] https://github.com/pnggroup/libpng/security/advisories/GHSA-9mpm-9pxh-mg4f

-- 
You are receiving this mail because:
You are on the CC list for the bug.