Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3378
HistoryFeb 01, 2017 - 5:20 a.m.

Denial Of Service (DoS) Through A Null Pointer Dereference

2017-02-0105:20:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.011 Low

EPSS

Percentile

84.4%

libpng is vulnerable to denial of service (DoS) attacks via null pointer dereference. The vulnerability has existed in libpng since version 0.71. To be vulnerable, an application has to load a text chunk into the png structure, then delete all text, then add another text chunk to the same png structure.

CPENameOperatorVersion
libpngeq1.6.18