7.5

CVE-2006-3334

Buffer overflow in the png_decompress_chunk function in pngrutil.c in libpng before 1.2.12 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors related to "chunk error processing," possibly involving the "chunk_name".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Greg RoelofsLibpng Version <= 1.2.11
Greg RoelofsLibpng Version1.2.0
Greg RoelofsLibpng Version1.2.1
Greg RoelofsLibpng Version1.2.2
Greg RoelofsLibpng Version1.2.3
Greg RoelofsLibpng Version1.2.4
Greg RoelofsLibpng Version1.2.5
Greg RoelofsLibpng Version1.2.6
Greg RoelofsLibpng Version1.2.7
Greg RoelofsLibpng Version1.2.7rc1
Greg RoelofsLibpng Version1.2.8
Greg RoelofsLibpng Version1.2.9
Greg RoelofsLibpng Version1.2.10
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.98% 0.891
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/22957
http://secunia.com/advisories/22958
http://www.mandriva.com/security/advisories?name=MDKSA-2006:212
http://www.mandriva.com/security/advisories?name=MDKSA-2006:213
http://secunia.com/advisories/33137
http://security.gentoo.org/glsa/glsa-200812-15.xml
http://secunia.com/advisories/20960
http://www.novell.com/linux/security/advisories/2006_16_sr.html
http://docs.info.apple.com/article.html?artnum=307562
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
http://www.vupen.com/english/advisories/2008/0924/references
http://secunia.com/advisories/29420
http://secunia.com/advisories/22956
http://secunia.com/advisories/23335
http://security.gentoo.org/glsa/glsa-200607-06.xml
http://sourceforge.net/project/shownotes.php?group_id=5624&release_id=428123
http://www.mandriva.com/security/advisories?name=MDKSA-2006:209
http://www.mandriva.com/security/advisories?name=MDKSA-2006:210
http://www.mandriva.com/security/advisories?name=MDKSA-2006:211
http://www.novell.com/linux/security/advisories/2006_28_sr.html
http://www.securityfocus.com/archive/1/440594/100/0/threaded
http://www.securityfocus.com/bid/18698
http://www.vupen.com/english/advisories/2006/2585
https://exchange.xforce.ibmcloud.com/vulnerabilities/27468
https://issues.rpath.com/browse/RPL-517