Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2692

Опубликовано: 17 июл. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

РелизСтатусПримечание
devel

not-affected

14.0.835.202~r103287-0ubuntu1
hardy

DNE

lucid

released

14.0.835.202~r103287-0ubuntu0.10.04.2
maverick

released

14.0.835.202~r103287-0ubuntu0.10.10.1
natty

released

14.0.835.202~r103287-0ubuntu0.11.04.1
oneiric

released

14.0.835.202~r103287-0ubuntu1
precise

not-affected

14.0.835.202~r103287-0ubuntu1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

released

8.0~b4+build1-0ubuntu2
hardy

ignored

end of life
lucid

released

10.0+build1-0ubuntu0.10.04.2
maverick

ignored

end of life
natty

released

8.0+build1-0ubuntu0.11.04.1
oneiric

released

8.0+build1-0ubuntu0.11.10.1
precise

released

8.0~b4+build1-0ubuntu2
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

1.2.46-3ubuntu1
hardy

released

1.2.15~beta5-3ubuntu0.4
lucid

released

1.2.42-1ubuntu2.2
maverick

released

1.2.44-1ubuntu0.1
natty

released

1.2.44-1ubuntu3.1
oneiric

not-affected

1.2.46-3ubuntu1
precise

not-affected

1.2.46-3ubuntu1
upstream

released

1.2.45

Показывать по

EPSS

Процентиль: 90%
0.0601
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

redhat
больше 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

CVSS3: 8.8
nvd
больше 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

CVSS3: 8.8
debian
больше 14 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0. ...

CVSS3: 8.8
github
больше 3 лет назад

The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.

fstec
около 14 лет назад

Уязвимость операционной системы CentOS, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 90%
0.0601
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3