Описание
The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| lucid | not-affected | |
| precise | not-affected | |
| quantal | not-affected | |
| raring | not-affected | |
| saucy | not-affected | |
| upstream | released | 1.6.8 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | ignored | uses system libjpeg6b |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [uses system libjpeg6b]] |
| lucid | DNE | |
| precise | ignored | end of life |
| quantal | ignored | end of life |
| saucy | ignored | end of life |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | trusty was ignored [uses system libjpeg6b] |
| upstream | released | 7u55-2.4.7-1 |
Показывать по
EPSS
5 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
The png_do_expand_palette function in libpng before 1.6.8 allows remot ...
The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
Уязвимость программной платформы Java Platform, позволяющая удаленному нарушителю нарушить доступность защищаемой информации
EPSS
5 Medium
CVSS2
6.5 Medium
CVSS3