PT-2017-8754 · Pngquant+1 · Pngquant+1

Choi Jaeseung

·

Publicado

2016-07-28

·

Atualizado

2024-06-15

·

CVE-2016-5735

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions pngquant version 2.7.0
Description The issue is related to an integer overflow in the rwpng read image24 libpng function, which can be triggered by a crafted PNG file. This overflow can lead to a buffer overflow, potentially allowing remote attackers to have an unspecified impact.
Recommendations For pngquant version 2.7.0, update to a newer version that contains a fix for this issue.

Exploit

Correção

Integer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-1791
CVE-2016-5735
DLA-2257-1
DLA-966-1
OPENSUSE-SU-2024:10972-1

Produtos afetados

Alt Linux
Pngquant