Security Advisories (1)
CVE-2016-9181 (2016-11-04)

perl-Image-Info: When parsing an SVG file, external entity expansion (XXE) was not disabled. An attacker could craft an SVG file which, when processed by an application using perl-Image-Info, could cause denial of service or, potentially, information disclosure.

NAME

Bundle::Image::Info::PNG - full PNG support for Image::Info

SYNOPSIS

perl -MCPAN -e 'install Bundle::Image::Info::PNG'

CONTENTS

Image::Info - the base Image::Info module

Compress::Zlib - reading compressed zTXt chunks in PNG files

DESCRIPTION

This bundle installs everything needed to get full PNG support into Image::Info. Without Compress::Zlib the ability to decompress zTXt chunks is missing.

AUTHOR

Slaven Rezic <srezic@cpan.org>