OptiPNG Project OptiPNG 0.5.2

CPE Details

OptiPNG Project OptiPNG 0.5.2
0.5.2
2019-06-05 16:25 +00:00
2019-06-05 16:25 +00:00

Alerte pour un CPE

Stay informed of any changes for a specific CPE.
Alert management

CPE Name: cpe:2.3:a:optipng_project:optipng:0.5.2:*:*:*:*:*:*:*

Informations

Vendor

optipng_project

Product

optipng

Version

0.5.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2015-7801 2016-04-20 14:00 +00:00 Use-after-free vulnerability in OptiPNG 0.6.4 allows remote attackers to execute arbitrary code via a crafted PNG file.
8.8
HIGH
CVE-2016-3981 2016-04-13 14:00 +00:00 Heap-based buffer overflow in the bmp_read_rows function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image file.
7.8
HIGH
CVE-2016-3982 2016-04-13 14:00 +00:00 Off-by-one error in the bmp_rle4_fread function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image file, which triggers a heap-based buffer overflow.
8.8
HIGH
CVE-2009-0749 2009-03-02 19:00 +00:00 Use-after-free vulnerability in the GIFReadNextExtension function in lib/pngxtern/gif/gifread.c in OptiPNG 0.6.2 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a crafted GIF image that causes the realloc function to return a new pointer, which triggers memory corruption when the old pointer is accessed.
7.8
HIGH
Click on the button to the left (OFF), to authorize the inscription of cookie improving the functionalities of the site. Click on the button to the left (Accept all), to unauthorize the inscription of cookie improving the functionalities of the site.