Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-3026

Опубликовано: 16 фев. 2012
Источник: redhat
CVSS2: 6.8
EPSS Средний

Описание

Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4thunderbirdAffected
Red Hat Enterprise Linux 5thunderbirdAffected
Red Hat Enterprise Linux 4seamonkeyFixedRHSA-2012:014116.02.2012
Red Hat Enterprise Linux 4firefoxFixedRHSA-2012:014216.02.2012
Red Hat Enterprise Linux 4libpngFixedRHSA-2012:031720.02.2012
Red Hat Enterprise Linux 4libpng10FixedRHSA-2012:031720.02.2012
Red Hat Enterprise Linux 5xulrunnerFixedRHSA-2012:014316.02.2012
Red Hat Enterprise Linux 5libpngFixedRHSA-2012:031720.02.2012
Red Hat Enterprise Linux 6thunderbirdFixedRHSA-2012:014016.02.2012
Red Hat Enterprise Linux 6xulrunnerFixedRHSA-2012:014316.02.2012

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=790737libpng: Heap buffer overflow in png_decompress_chunk (MFSA 2012-11)

EPSS

Процентиль: 97%
0.34687
Средний

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.

nvd
больше 13 лет назад

Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.

debian
больше 13 лет назад

Integer overflow in libpng, as used in Google Chrome before 17.0.963.5 ...

github
больше 3 лет назад

Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.

oracle-oval
больше 13 лет назад

ELSA-2012-0317: libpng security update (IMPORTANT)

EPSS

Процентиль: 97%
0.34687
Средний

6.8 Medium

CVSS2