Количество 53
Количество 53
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54.
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54.
CVE-2026-22695
LIBPNG has a heap buffer over-read in png_image_read_direct_scaled (regression from CVE-2025-65018 fix)
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, creat ...
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, creat ...
SUSE-SU-2026:0192-1
Security update for libpng16
BDU:2026-01048
Уязвимость функции png_image_read_direct_scaled() библиотеки libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании
SUSE-SU-2026:3039-1
Security update for libpng12
SUSE-SU-2026:2878-1
Security update for libpng15
SUSE-SU-2026:0599-1
Security update for libpng12
SUSE-SU-2026:0598-1
Security update for libpng12
SUSE-SU-2026:0597-1
Security update for libpng16
SUSE-SU-2026:0583-1
Security update for libpng16
RLSA-2026:6445
Important: libpng12 security update
RLSA-2026:6439
Important: libpng15 security update
RLSA-2026:3031
Important: libpng15 security update
ELSA-2026-7032
ELSA-2026-7032: libpng12 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22695 LIBPNG has a heap buffer over-read in png_image_read_direct_scaled (regression from CVE-2025-65018 fix) | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 7 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55. | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
CVE-2026-25646 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 8.1 | 1% Низкий | 6 месяцев назад | |
SUSE-SU-2026:0192-1 Security update for libpng16 | 0% Низкий | 6 месяцев назад | ||
BDU:2026-01048 Уязвимость функции png_image_read_direct_scaled() библиотеки libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании | CVSS3: 7.1 | 0% Низкий | 8 месяцев назад | |
SUSE-SU-2026:3039-1 Security update for libpng12 | 1% Низкий | 16 дней назад | ||
SUSE-SU-2026:2878-1 Security update for libpng15 | 1% Низкий | 18 дней назад | ||
SUSE-SU-2026:0599-1 Security update for libpng12 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0598-1 Security update for libpng12 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0597-1 Security update for libpng16 | 1% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0583-1 Security update for libpng16 | 1% Низкий | 5 месяцев назад | ||
RLSA-2026:6445 Important: libpng12 security update | 1% Низкий | 4 месяца назад | ||
RLSA-2026:6439 Important: libpng15 security update | 1% Низкий | 4 месяца назад | ||
RLSA-2026:3031 Important: libpng15 security update | 1% Низкий | 5 месяцев назад | ||
ELSA-2026-7032 ELSA-2026-7032: libpng12 security update (IMPORTANT) | 3 месяца назад |
Уязвимостей на страницу