Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2692

Опубликовано: 17 июл. 2011
Источник: ubuntu
Приоритет: low
CVSS2: 6.8
CVSS3: 8.8

Описание

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

РелизСтатусПримечание
devel

not-affected

14.0.835.202~r103287-0ubuntu1
hardy

DNE

lucid

released

14.0.835.202~r103287-0ubuntu0.10.04.2
maverick

released

14.0.835.202~r103287-0ubuntu0.10.10.1
natty

released

14.0.835.202~r103287-0ubuntu0.11.04.1
oneiric

released

14.0.835.202~r103287-0ubuntu1
precise

not-affected

14.0.835.202~r103287-0ubuntu1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

released

8.0~b4+build1-0ubuntu2
hardy

ignored

end of life
lucid

released

10.0+build1-0ubuntu0.10.04.2
maverick

ignored

end of life
natty

released

8.0+build1-0ubuntu0.11.04.1
oneiric

released

8.0+build1-0ubuntu0.11.10.1
precise

released

8.0~b4+build1-0ubuntu2
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

1.2.46-3ubuntu1
hardy

released

1.2.15~beta5-3ubuntu0.4
lucid

released

1.2.42-1ubuntu2.2
maverick

released

1.2.44-1ubuntu0.1
natty

released

1.2.44-1ubuntu3.1
oneiric

not-affected

1.2.46-3ubuntu1
precise

not-affected

1.2.46-3ubuntu1
upstream

released

1.2.45

Показывать по

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

redhat
почти 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

CVSS3: 8.8
nvd
почти 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

CVSS3: 8.8
debian
почти 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0. ...

CVSS3: 8.8
github
около 3 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

fstec
почти 14 лет назад

Уязвимость операционной системы CentOS, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

6.8 Medium

CVSS2

8.8 High

CVSS3