Search CVE reports


Toggle filters

51 – 60 of 64 results


CVE-2007-5267

Medium priority
Not affected

Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.2.22 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image, due to an incorrect fix...

1 affected package

libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
Show less packages

CVE-2007-5266

Medium priority
Not affected

Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 and 1.2.x before 1.2.21 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG...

1 affected package

libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
Show less packages

CVE-2007-5269

Medium priority
Fixed

Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt),...

1 affected package

libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
Show less packages

CVE-2007-2445

Medium priority
Fixed

The png_handle_tRNS function in pngrutil.c in libpng before 1.0.25 and 1.2.x before 1.2.17 allows remote attackers to cause a denial of service (application crash) via a grayscale PNG image with a bad tRNS chunk CRC value.

1 affected package

libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
Show less packages

CVE-2006-5793

Medium priority
Fixed

The sPLT chunk handling code (png_set_sPLT function in pngset.c) in libpng 1.0.6 through 1.2.12 uses a sizeof operator on the wrong data type, which allows context-dependent attackers to cause a denial of service (crash)...

1 affected package

libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
Show less packages

CVE-2006-3334

Medium priority
Not affected

Buffer overflow in the png_decompress_chunk function in pngrutil.c in libpng before 1.2.12 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors related to...

2 affected packages

libpng, libpng3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
libpng3
Show less packages

CVE-2006-0481

Medium priority
Fixed

Heap-based buffer overflow in the alpha strip capability in libpng 1.2.7 allows context-dependent attackers to cause a denial of service (crash) when the png_do_strip_filler function is used to strip alpha channels out of the image.

3 affected packages

libpng, libpng3, php5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
libpng3
php5
Show less packages

CVE-2004-0955

Medium priority
Fixed

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0599. Reason: This candidate is a reservation duplicate of CVE-2004-0599 (the first item listed in that candidate). Notes: All CVE users should reference...

2 affected packages

libpng, libpng3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
libpng3
Show less packages

CVE-2004-0954

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0597. Reason: This candidate is a reservation duplicate of CVE-2004-0597. Notes: All CVE users should reference CVE-2004-0597 instead of this candidate. ...

2 affected packages

libpng, libpng3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
libpng3
Show less packages

CVE-2004-0599

Medium priority
Fixed

Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image reading capability in libpng 1.2.5 and earlier allow remote attackers to cause a...

2 affected packages

libpng, libpng3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng
libpng3
Show less packages