Описание
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.
Ссылки
- Vendor Advisory
- Permissions RequiredThird Party Advisory
- Third Party Advisory
- Exploit
- ExploitThird Party Advisory
- Exploit
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
- Permissions RequiredThird Party Advisory
- Third Party Advisory
- Exploit
- ExploitThird Party Advisory
- Exploit
- Third Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
8.8 High
CVSS3
7.5 High
CVSS2
Дефекты
Связанные уязвимости
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in li ...
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.
Уязвимость библиотеки libpng, позволяющая нарушителю выполнить произвольный код
EPSS
8.8 High
CVSS3
7.5 High
CVSS2