Количество 53
Количество 53
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_*
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, creat ...
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, creat ...
ROS-20260401-73-0005
Уязвимость libpng15
ROS-20260401-73-0004
Уязвимость libpng12
ROS-20260401-73-0003
Уязвимость libpng
BDU:2026-04960
Уязвимость функций png_write_image_16bit() и png_write_image_8bit() библиотеки для работы с растровой графикой в формате PNG Libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
SUSE-SU-2026:3039-1
Security update for libpng12
SUSE-SU-2026:2878-1
Security update for libpng15
SUSE-SU-2026:0599-1
Security update for libpng12
SUSE-SU-2026:0598-1
Security update for libpng12
SUSE-SU-2026:0597-1
Security update for libpng16
SUSE-SU-2026:0583-1
Security update for libpng16
RLSA-2026:6445
Important: libpng12 security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.6 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22801 LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_* | CVSS3: 6.8 | 0% Низкий | 6 месяцев назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 6.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 7 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
ROS-20260401-73-0005 Уязвимость libpng15 | CVSS3: 7.8 | 0% Низкий | 4 месяца назад | |
ROS-20260401-73-0004 Уязвимость libpng12 | CVSS3: 7.8 | 0% Низкий | 4 месяца назад | |
ROS-20260401-73-0003 Уязвимость libpng | CVSS3: 7.8 | 0% Низкий | 4 месяца назад | |
BDU:2026-04960 Уязвимость функций png_write_image_16bit() и png_write_image_8bit() библиотеки для работы с растровой графикой в формате PNG Libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 6.8 | 0% Низкий | 7 месяцев назад | |
SUSE-SU-2026:3039-1 Security update for libpng12 | 1% Низкий | 16 дней назад | ||
SUSE-SU-2026:2878-1 Security update for libpng15 | 1% Низкий | 18 дней назад | ||
SUSE-SU-2026:0599-1 Security update for libpng12 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0598-1 Security update for libpng12 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0597-1 Security update for libpng16 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0583-1 Security update for libpng16 | 1% Низкий | 5 месяцев назад | ||
RLSA-2026:6445 Important: libpng12 security update | 1% Низкий | 4 месяца назад |
Уязвимостей на страницу