Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libpng HIGH 7.5
CVE-2006-3334

Buffer overflow in the png_decompress_chunk function in pngrutil.c in libpng before 1.2.12 allows context-dependent attackers to cause a denial of se…

Fix: after 1.2.11
Fix from $1,950 2006-06-30
Libpng MEDIUM 5.0
CVE-2006-0481

Heap-based buffer overflow in the alpha strip capability in libpng 1.2.7 allows context-dependent attackers to cause a denial of service (crash) when…

Patch available
Fix from $1,600 2006-01-31
Libpng HIGH 10.0
CVE-2004-0597EPSS 83%

Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute arbitrary code via malformed P…

Fix: after 1.2.5
Fix from $1,950 2004-11-23
Libpng MEDIUM 5.0
CVE-2004-0598EPSS 6%

The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (application crash) via a certain PNG i…

Fix: after 1.2.5
Fix from $1,600 2004-11-23
Libpng MEDIUM 5.0
CVE-2004-0599EPSS 6%

Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image readi…

Fix: after 1.2.5
Fix from $1,600 2004-11-23
Libpng3 HIGH 7.5
CVE-2004-0768

libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execute arbitrary code via a buffe…

Patch available
Fix from $1,950 2004-10-20
Libpng HIGH 7.5
CVE-2002-1363EPSS 6%

Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denia…

Patch available
Fix from $1,950 2002-12-26
Libpng HIGH 7.5
CVE-2002-0660

Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating systems, may allow attackers to…

Mitigation only
Fix from $1,950 2002-08-12
Libpng MEDIUM 5.0
CVE-2002-0728

Buffer overflow in the progressive reader for libpng 1.2.x before 1.2.4, and 1.0.x before 1.0.14, allows attackers to cause a denial of service (cras…

Mitigation only
Fix from $1,600 2002-08-12