pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2007-10-08 14:17
Updated : 2018-10-26 07:11
NVD link : CVE-2007-5268
Mitre link : CVE-2007-5268
JSON object : View
CWE
Products Affected
canonical
- ubuntu_linux
libpng
- libpng