Lucene search

K
osvGoogleOSV:USN-5432-1
HistoryMay 23, 2022 - 10:45 a.m.

libpng vulnerabilities

2022-05-2310:45:47
Google
osv.dev
7

7.3 High

AI Score

Confidence

High

0.028 Low

EPSS

Percentile

90.7%

It was discovered that libpng incorrectly handled memory when parsing
certain PNG files. If a user or automated system were tricked into opening
a specially crafted PNG file, an attacker could use this issue to cause
libpng to crash, resulting in a denial of service, or possible execute
arbitrary code. (CVE-2017-12652)

Zhengxiong Luo discovered that libpng incorrectly handled memory when parsing
certain PNG files. If a user or automated system were tricked into opening
a specially crafted PNG file, an attacker could use this issue to cause
libpng to crash, resulting in a denial of service, or possible execute
arbitrary code. (CVE-2018-14048)