Количество 35
Количество 35
CVE-2026-33636
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue.
CVE-2026-33636
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue.
CVE-2026-33636
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue.
CVE-2026-33636
LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64
CVE-2026-33636
LIBPNG is a reference library for use in applications that read, creat ...
RLSA-2026:14791
Moderate: libpng security update
RLSA-2026:14790
Moderate: libpng security update
ELSA-2026-14791
ELSA-2026-14791: libpng security update (MODERATE)
ELSA-2026-14790
ELSA-2026-14790: libpng security update (MODERATE)
BDU:2026-06669
Уязвимость библиотеки libpng, связанная с отсутствием проверки достаточного количества входных пикселей, позволяющая нарушителю раскрыть защищаемую информации и выполнить отказ в обслуживании
openSUSE-SU-2026:20466-1
Security update for libpng16
SUSE-SU-2026:1368-1
Security update for libpng16
ROS-20260526-73-0021
Уязвимость libpng12
ROS-20260526-73-0020
Уязвимость libpng
ROS-20260526-73-0019
Уязвимость mingw-libpng
ROS-20260526-73-0018
Уязвимость libpng15
RLSA-2026:28255
Moderate: libpng security update
RLSA-2026:28233
Moderate: libpng security update
ELSA-2026-28255
ELSA-2026-28255: libpng security update (MODERATE)
ELSA-2026-28233
ELSA-2026-28233: libpng security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33636 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue. | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
CVE-2026-33636 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue. | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
CVE-2026-33636 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels remain. Because the implementation works backward from the end of the row, the final iteration dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG input if Neon is enabled. Version 1.6.56 fixes the issue. | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
CVE-2026-33636 LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64 | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
CVE-2026-33636 LIBPNG is a reference library for use in applications that read, creat ... | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
RLSA-2026:14791 Moderate: libpng security update | 1% Низкий | 3 месяца назад | ||
RLSA-2026:14790 Moderate: libpng security update | 1% Низкий | 3 месяца назад | ||
ELSA-2026-14791 ELSA-2026-14791: libpng security update (MODERATE) | 3 месяца назад | |||
ELSA-2026-14790 ELSA-2026-14790: libpng security update (MODERATE) | 3 месяца назад | |||
BDU:2026-06669 Уязвимость библиотеки libpng, связанная с отсутствием проверки достаточного количества входных пикселей, позволяющая нарушителю раскрыть защищаемую информации и выполнить отказ в обслуживании | CVSS3: 7.6 | 1% Низкий | 4 месяца назад | |
openSUSE-SU-2026:20466-1 Security update for libpng16 | 4 месяца назад | |||
SUSE-SU-2026:1368-1 Security update for libpng16 | 4 месяца назад | |||
ROS-20260526-73-0021 Уязвимость libpng12 | CVSS3: 7.6 | 1% Низкий | 2 месяца назад | |
ROS-20260526-73-0020 Уязвимость libpng | CVSS3: 7.6 | 1% Низкий | 2 месяца назад | |
ROS-20260526-73-0019 Уязвимость mingw-libpng | CVSS3: 7.6 | 1% Низкий | 2 месяца назад | |
ROS-20260526-73-0018 Уязвимость libpng15 | CVSS3: 7.6 | 1% Низкий | 2 месяца назад | |
RLSA-2026:28255 Moderate: libpng security update | около 1 месяца назад | |||
RLSA-2026:28233 Moderate: libpng security update | около 1 месяца назад | |||
ELSA-2026-28255 ELSA-2026-28255: libpng security update (MODERATE) | около 1 месяца назад | |||
ELSA-2026-28233 ELSA-2026-28233: libpng security update (MODERATE) | 15 дней назад |
Уязвимостей на страницу