Libpng

Libpng

57 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.76%
  • Veröffentlicht 27.02.2014 20:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_push_read_chunk function in pngpread.c in the progressive decoder in libpng 1.6.x through 1.6.9 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an IDAT chunk with a length of zero.

Exploit
  • EPSS 3.55%
  • Veröffentlicht 12.01.2014 18:34:55
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset...

  • EPSS 3.23%
  • Veröffentlicht 13.08.2012 20:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value ...

  • EPSS 1.88%
  • Veröffentlicht 22.07.2012 17:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Off-by-one error in the png_formatted_warning function in pngerror.c in libpng 1.5.4 through 1.5.7 might allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unspecified vectors, which trigge...

  • EPSS 16.89%
  • Veröffentlicht 29.05.2012 20:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted text chunk i...

  • EPSS 4.46%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly exe...

  • EPSS 0.47%
  • Veröffentlicht 31.08.2011 23:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Memory leak in the embedded_profile_len function in pngwutil.c in libpng before 1.2.39beta5 allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative ...

  • EPSS 0.42%
  • Veröffentlicht 31.08.2011 23:55:00
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Memory leak in pngwutil.c in libpng 1.2.13beta1, and other versions before 1.2.15beta3, allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embe...

Exploit
  • EPSS 7.47%
  • Veröffentlicht 17.07.2011 20:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory...

Exploit
  • EPSS 7.69%
  • Veröffentlicht 17.07.2011 20:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The png_err function in pngerror.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 makes a function call using a NULL pointer argument instead of an empty-string argument, which allows remote attackers t...