Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-3425

Опубликовано: 13 авг. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image.

РелизСтатусПримечание
devel

not-affected

uses system libpng
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [uses system libpng]]
hardy

DNE

lucid

not-affected

uses system libpng
natty

not-affected

uses system libpng
oneiric

not-affected

uses system libpng
precise

not-affected

uses system libpng
quantal

not-affected

uses system libpng
raring

not-affected

uses system libpng
saucy

not-affected

uses system libpng

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
hardy

ignored

end of life
lucid

not-affected

natty

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

1.2.49-1ubuntu1
esm-infra-legacy/trusty

not-affected

1.2.49-1ubuntu1
hardy

ignored

end of life
lucid

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

released

1.2.46-3ubuntu4.1
quantal

not-affected

1.2.49-1ubuntu1
raring

not-affected

1.2.49-1ubuntu1
saucy

not-affected

1.2.49-1ubuntu1

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
hardy

ignored

end of life
lucid

not-affected

natty

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

Показывать по

EPSS

Процентиль: 82%
0.01748
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image.

nvd
почти 13 лет назад

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image.

msrc
2 месяца назад

Описание отсутствует

debian
почти 13 лет назад

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1 ...

github
около 3 лет назад

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image.

EPSS

Процентиль: 82%
0.01748
Низкий

4.3 Medium

CVSS2

Уязвимость CVE-2012-3425