Количество 32
Количество 32
RLSA-2026:3551
Important: libpng security update
RLSA-2026:3405
Important: libpng security update
ELSA-2026-4728
ELSA-2026-4728: libpng security update (IMPORTANT)
ELSA-2026-4306
ELSA-2026-4306: mingw-libpng security update (IMPORTANT)
ELSA-2026-3551
ELSA-2026-3551: libpng security update (IMPORTANT)
ELSA-2026-3405
ELSA-2026-3405: libpng security update (IMPORTANT)
SUSE-SU-2026:0596-1
Security update for libpng16
openSUSE-SU-2026:20083-1
Security update for libpng16
SUSE-SU-2026:0234-1
Security update for libpng16
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54.
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54.
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54.
CVE-2026-22695
LIBPNG has a heap buffer over-read in png_image_read_direct_scaled (regression from CVE-2025-65018 fix)
CVE-2026-22695
LIBPNG is a reference library for use in applications that read, creat ...
SUSE-SU-2026:0192-1
Security update for libpng16
BDU:2026-01048
Уязвимость функции png_image_read_direct_scaled() библиотеки libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54.
CVE-2026-22801
LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_*
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:3551 Important: libpng security update | 23 дня назад | |||
RLSA-2026:3405 Important: libpng security update | 28 дней назад | |||
ELSA-2026-4728 ELSA-2026-4728: libpng security update (IMPORTANT) | 11 дней назад | |||
ELSA-2026-4306 ELSA-2026-4306: mingw-libpng security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-3551 ELSA-2026-3551: libpng security update (IMPORTANT) | 26 дней назад | |||
ELSA-2026-3405 ELSA-2026-3405: libpng security update (IMPORTANT) | около 1 месяца назад | |||
SUSE-SU-2026:0596-1 Security update for libpng16 | около 1 месяца назад | |||
openSUSE-SU-2026:20083-1 Security update for libpng16 | 2 месяца назад | |||
SUSE-SU-2026:0234-1 Security update for libpng16 | 2 месяца назад | |||
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54. | CVSS3: 6.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54. | CVSS3: 6.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API function png_image_finish_read when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. This is a regression introduced by the fix for CVE-2025-65018. This vulnerability is fixed in 1.6.54. | CVSS3: 6.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-22695 LIBPNG has a heap buffer over-read in png_image_read_direct_scaled (regression from CVE-2025-65018 fix) | CVSS3: 6.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-22695 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 6.1 | 0% Низкий | 2 месяца назад | |
SUSE-SU-2026:0192-1 Security update for libpng16 | 0% Низкий | 2 месяца назад | ||
BDU:2026-01048 Уязвимость функции png_image_read_direct_scaled() библиотеки libpng, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.8 | 0% Низкий | 2 месяца назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.6 | 0% Низкий | 2 месяца назад | |
CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API functions png_write_image_16bit and png_write_image_8bit causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. The bug was introduced in libpng 1.6.26 (October 2016) by casts added to silence compiler warnings on 16-bit systems. This vulnerability is fixed in 1.6.54. | CVSS3: 6.8 | 0% Низкий | 2 месяца назад | |
CVE-2026-22801 LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_* | CVSS3: 6.8 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу