CVE-2013-6954 | libpng up to 1.6.8 pngrtran.c png_read_transform_info null pointer dereference (VU#650142 / Nessus ID 75395)
A vulnerability was found in libpng up to 1.6.8. It has been classified as critical. Affected is the function png_read_transform_info of the file pngrtran.c. The manipulation with the input NULL leads to null pointer dereference.
This vulnerability is traded as CVE-2013-6954. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.