CVE-2010-2249
- EPSS 1.57%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
CVE-2010-1205
- EPSS 17.03%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CVE-2010-0205
- EPSS 8.13%
- Veröffentlicht 03.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which...
CVE-2009-2042
- EPSS 1.61%
- Veröffentlicht 12.06.2009 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
libpng before 1.2.37 does not properly parse 1-bit interlaced images with width values that are not divisible by 8, which causes libpng to include uninitialized bits in certain rows of a PNG file and might allow remote attackers to read portions of s...
CVE-2009-0040
- EPSS 3.94%
- Veröffentlicht 22.02.2009 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush and other applications, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a cr...
CVE-2008-6218
- EPSS 3.19%
- Veröffentlicht 20.02.2009 17:30:03
- Zuletzt bearbeitet 09.04.2025 00:30:58
Memory leak in the png_handle_tEXt function in pngrutil.c in libpng before 1.2.33 rc02 and 1.4.0 beta36 allows context-dependent attackers to cause a denial of service (memory exhaustion) via a crafted PNG file.
- EPSS 0.79%
- Veröffentlicht 15.01.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with k...
CVE-2008-3964
- EPSS 1.68%
- Veröffentlicht 11.09.2008 01:13:47
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow context-dependent attackers to cause a denial of service (crash) or have unspecified other impact via a PNG image with crafted zTXt chunks, related to (1) the...
CVE-2008-1382
- EPSS 6.92%
- Veröffentlicht 14.04.2008 16:05:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
libpng 1.0.6 through 1.0.32, 1.2.0 through 1.2.26, and 1.4.0beta01 through 1.4.0beta19 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG file with zero length "unknown" chunks, which...
- EPSS 10.46%
- Veröffentlicht 08.10.2007 21:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle...