Show filters
46 Total Results
Displaying 1-10 of 46
Sort by:
Attacker Value
Unknown

CVE-2021-4214

Disclosure Date: August 24, 2022 (last updated November 29, 2024)
A heap overflow flaw was found in libpngs' pngimage.c program. This flaw allows an attacker with local network access to pass a specially crafted PNG file to the pngimage utility, causing an application to crash, leading to a denial of service.
Attacker Value
Unknown

CVE-2020-35511

Disclosure Date: August 23, 2022 (last updated October 08, 2023)
A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.
Attacker Value
Unknown

CVE-2020-27818

Disclosure Date: December 08, 2020 (last updated November 08, 2023)
A flaw was found in the check_chunk_name() function of pngcheck-2.4.0. An attacker able to pass a malicious file to be processed by pngcheck could cause a temporary denial of service, posing a low risk to application availability.
Attacker Value
Unknown

CVE-2017-12652

Disclosure Date: July 10, 2019 (last updated November 08, 2023)
libpng before 1.6.32 does not properly check the length of chunks against the user limit.
Attacker Value
Unknown

CVE-2018-14550

Disclosure Date: July 10, 2019 (last updated November 27, 2024)
An issue has been found in third-party PNM decoding associated with libpng 1.6.35. It is a stack-based buffer overflow in the function get_token in pnm2png.c in pnm2png.
Attacker Value
Unknown

CVE-2019-7317

Disclosure Date: February 04, 2019 (last updated October 22, 2024)
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
Attacker Value
Unknown

CVE-2019-6129

Disclosure Date: January 11, 2019 (last updated November 08, 2023)
png_create_info_struct in png.c in libpng 1.6.36 has a memory leak, as demonstrated by pngcp. NOTE: a third party has stated "I don't think it is libpng's job to free this buffer.
0
Attacker Value
Unknown

CVE-2018-14048

Disclosure Date: July 13, 2018 (last updated November 27, 2024)
An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommended error handling for png_read_image.
Attacker Value
Unknown

CVE-2018-13785

Disclosure Date: July 09, 2018 (last updated November 27, 2024)
In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service.
Attacker Value
Unknown

CVE-2016-10087

Disclosure Date: January 30, 2017 (last updated November 08, 2023)
The png_set_text_2 function in libpng 0.71 before 1.0.67, 1.2.x before 1.2.57, 1.4.x before 1.4.20, 1.5.x before 1.5.28, and 1.6.x before 1.6.27 allows context-dependent attackers to cause a NULL pointer dereference vectors involving loading a text chunk into a png structure, removing the text, and then adding another text chunk to the structure.
0