libpng 1.5.26 Beta

CPE Details

libpng 1.5.26 Beta
1.5.26
2019-07-11
11h11 +00:00
2019-07-11
11h11 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:libpng:libpng:1.5.26:beta:*:*:*:*:*:*

Informations

Vendor

libpng

Product

libpng

Version

1.5.26

Update

beta

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2017-12652 2019-07-10 12h10 +00:00 libpng before 1.6.32 does not properly check the length of chunks against the user limit.
9.8
Critical
CVE-2016-10087 2017-01-30 21h00 +00:00 The png_set_text_2 function in libpng 0.71 before 1.0.67, 1.2.x before 1.2.57, 1.4.x before 1.4.20, 1.5.x before 1.5.28, and 1.6.x before 1.6.27 allows context-dependent attackers to cause a NULL pointer dereference vectors involving loading a text chunk into a png structure, removing the text, and then adding another text chunk to the structure.
7.5
High
CVE-2016-3751 2016-07-10 23h00 +00:00 Unspecified vulnerability in libpng before 1.6.20, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01, allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23265085.
7.8
High
CVE-2013-6954 2014-01-12 14h00 +00:00 The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
5