Логотип exploitDog
bind:"CVE-2026-25646"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2026-25646"

Количество 18

Количество 18

ubuntu логотип

CVE-2026-25646

около 2 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2026-25646

около 2 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-25646

около 2 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2026-25646

около 2 месяцев назад

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0599-1

около 1 месяца назад

Security update for libpng12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0598-1

около 1 месяца назад

Security update for libpng12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0597-1

около 1 месяца назад

Security update for libpng16

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0583-1

около 1 месяца назад

Security update for libpng16

EPSS: Низкий
rocky логотип

RLSA-2026:3031

около 1 месяца назад

Important: libpng15 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3031

около 1 месяца назад

ELSA-2026-3031: libpng15 security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2026-01774

около 2 месяцев назад

Уязвимость функции png_set_quantize() библиотеки для работы с растровой графикой в формате PNG libpng, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
EPSS: Низкий
rocky логотип

RLSA-2026:3551

23 дня назад

Important: libpng security update

EPSS: Низкий
rocky логотип

RLSA-2026:3405

28 дней назад

Important: libpng security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-4728

12 дней назад

ELSA-2026-4728: libpng security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-4306

18 дней назад

ELSA-2026-4306: mingw-libpng security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3551

27 дней назад

ELSA-2026-3551: libpng security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3405

около 1 месяца назад

ELSA-2026-3405: libpng security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0596-1

около 1 месяца назад

Security update for libpng16

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0599-1

Security update for libpng12

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0598-1

Security update for libpng12

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0597-1

Security update for libpng16

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0583-1

Security update for libpng16

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:3031

Important: libpng15 security update

0%
Низкий
около 1 месяца назад
oracle-oval логотип
ELSA-2026-3031

ELSA-2026-3031: libpng15 security update (IMPORTANT)

около 1 месяца назад
fstec логотип
BDU:2026-01774

Уязвимость функции png_set_quantize() библиотеки для работы с растровой графикой в формате PNG libpng, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2026:3551

Important: libpng security update

23 дня назад
rocky логотип
RLSA-2026:3405

Important: libpng security update

28 дней назад
oracle-oval логотип
ELSA-2026-4728

ELSA-2026-4728: libpng security update (IMPORTANT)

12 дней назад
oracle-oval логотип
ELSA-2026-4306

ELSA-2026-4306: mingw-libpng security update (IMPORTANT)

18 дней назад
oracle-oval логотип
ELSA-2026-3551

ELSA-2026-3551: libpng security update (IMPORTANT)

27 дней назад
oracle-oval логотип
ELSA-2026-3405

ELSA-2026-3405: libpng security update (IMPORTANT)

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0596-1

Security update for libpng16

около 1 месяца назад

Уязвимостей на страницу