9.3 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
0.039 Low
EPSS
Percentile
92.0%
Heap-based buffer overflow in the progressive PNG Image loader
(decoders/pngloader.cpp) in KHTML in KDE 4.0.x up to 4.0.3 allows remote
attackers to cause a denial of service (crash) and possibly execute
arbitrary code via a crafted image.
Author | Note |
---|---|
mdeslaur | reproducer in RH bug |