Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 53

Количество 53

ubuntu логотип

CVE-2026-22801

7 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.8
EPSS: Низкий
redhat логотип

CVE-2026-22801

7 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.6
EPSS: Низкий
nvd логотип

CVE-2026-22801

7 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.8
EPSS: Низкий
msrc логотип

CVE-2026-22801

6 месяцев назад

LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_*

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2026-22801

7 месяцев назад

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2026-25646

6 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2026-25646

6 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-25646

6 месяцев назад

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2026-25646

6 месяцев назад

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 8.1
EPSS: Низкий
redos логотип

ROS-20260401-73-0005

4 месяца назад

Уязвимость libpng15

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20260401-73-0004

4 месяца назад

Уязвимость libpng12

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20260401-73-0003

4 месяца назад

Уязвимость libpng

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2026-04960

7 месяцев назад

Уязвимость функций png_write_image_16bit() и png_write_image_8bit() библиотеки для работы с растровой графикой в формате PNG Libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3039-1

16 дней назад

Security update for libpng12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2878-1

18 дней назад

Security update for libpng15

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0599-1

5 месяцев назад

Security update for libpng12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0598-1

5 месяцев назад

Security update for libpng12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0597-1

5 месяцев назад

Security update for libpng16

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0583-1

5 месяцев назад

Security update for libpng16

EPSS: Низкий
rocky логотип

RLSA-2026:6445

4 месяца назад

Important: libpng12 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-22801

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.8
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2026-22801

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.6
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2026-22801

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.

CVSS3: 6.8
0%
Низкий
7 месяцев назад
msrc логотип
CVE-2026-22801

LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_*

CVSS3: 6.8
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-22801

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 6.8
0%
Низкий
7 месяцев назад
ubuntu логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
1%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 7
1%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.

CVSS3: 8.1
1%
Низкий
6 месяцев назад
debian логотип
CVE-2026-25646

LIBPNG is a reference library for use in applications that read, creat ...

CVSS3: 8.1
1%
Низкий
6 месяцев назад
redos логотип
ROS-20260401-73-0005

Уязвимость libpng15

CVSS3: 7.8
0%
Низкий
4 месяца назад
redos логотип
ROS-20260401-73-0004

Уязвимость libpng12

CVSS3: 7.8
0%
Низкий
4 месяца назад
redos логотип
ROS-20260401-73-0003

Уязвимость libpng

CVSS3: 7.8
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-04960

Уязвимость функций png_write_image_16bit() и png_write_image_8bit() библиотеки для работы с растровой графикой в формате PNG Libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.8
0%
Низкий
7 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:3039-1

Security update for libpng12

1%
Низкий
16 дней назад
suse-cvrf логотип
SUSE-SU-2026:2878-1

Security update for libpng15

1%
Низкий
18 дней назад
suse-cvrf логотип
SUSE-SU-2026:0599-1

Security update for libpng12

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0598-1

Security update for libpng12

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0597-1

Security update for libpng16

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0583-1

Security update for libpng16

1%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:6445

Important: libpng12 security update

1%
Низкий
4 месяца назад

Уязвимостей на страницу