libpng contains an overflow condition in the handling of PNG files. The issue is triggered as user-supplied input is not properly sanitized when handling row buffers. With a specially crafted PNG file, a context-dependent attacker can cause a buffer overflow to cause a denial of service or potentially execute arbitrary code.
The vendor has released a patch to address this vulnerability. There are no known workarounds or upgrades to correct this issue. Check the vendor advisory, changelog, or solution in the references section for details.