Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
73 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.46% | — | LibpngGoogle Android | 11/7/2016 | 17/6/2026 | Unspecified vulnerability in libpng before 1.6.20, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01, allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23265085. | |
| Modificada | Alta (8.8) | 6.5% | — | Redhat Enterprise Linux Desktop SupplementaryRedhat Enterprise Linux HPC NodeRedhat Enterprise Linux Server SupplementaryRedhat Enterprise Linux Workstation Supplementary+3 | 14/4/2016 | 17/6/2026 | Integer underflow in the png_check_keyword function in pngwutil.c in libpng 0.90 through 0.99, 1.0.x before 1.0.66, 1.1.x and 1.2.x before 1.2.56, 1.3.x and 1.4.x before 1.4.19, and 1.5.x before 1.5.26 allows remote attackers to have unspecified impact via a space character as a keyword in a PNG image, which triggers… | |
| Modificada | Alta (7.3) | 6.1% | — | Apple MAC OS XLibpng | 21/1/2016 | 17/6/2026 | Buffer overflow in the png_set_PLTE function in libpng before 1.0.65, 1.1.x and 1.2.x before 1.2.55, 1.3.x, 1.4.x before 1.4.18, 1.5.x before 1.5.25, and 1.6.x before 1.6.20 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a small bit-depth value in… | |
| Modificada | Media (5) | 6.4% | — | Canonical Ubuntu LinuxDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux HPC Node+6 | 24/11/2015 | 17/6/2026 | The png_convert_to_rfc1123 function in png.c in libpng 1.0.x before 1.0.64, 1.2.x before 1.2.54, and 1.4.x before 1.4.17 allows remote attackers to obtain sensitive process memory information via crafted tIME chunk data in an image file, which triggers an out-of-bounds read. | |
| Modificada | Alta (7.5) | 10% | — | LibpngFedoraproject FedoraOpensuse LeapOpensuse+16 | 13/11/2015 | 17/6/2026 | Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other… | |
| Modificada | Alta (8.8) | 4.1% | — | Oracle SolarisLibpngApple MAC OS X | 18/1/2015 | 17/6/2026 | Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495. | |
| Modificada | Alta (8.8) | 4.1% | 💥 PoC | Apple MAC OS XLibpng | 10/1/2015 | 17/6/2026 | Heap-based buffer overflow in the png_combine_row function in libpng before 1.5.21 and 1.6.x before 1.6.16, when running on 64-bit systems, might allow context-dependent attackers to execute arbitrary code via a "very wide interlaced" PNG image. | |
| Modificada | Media (6.5) | 2.4% | — | Libpng | 6/5/2014 | 17/6/2026 | Multiple integer overflows in libpng before 1.5.14rc03 allow remote attackers to cause a denial of service (crash) via a crafted image to the (1) png_set_sPLT or (2) png_set_text_2 function, which triggers a heap-based buffer overflow. | |
| Modificada | Media (6.5) | 1.9% | — | Libpng | 6/5/2014 | 17/6/2026 | Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng before 1.5.14beta08 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a crafted image, which triggers a heap-based buffer overflow. | |
| Modificada | Media (5) | 3.3% | — | Libpng | 27/2/2014 | 17/6/2026 | The png_push_read_chunk function in pngpread.c in the progressive decoder in libpng 1.6.x through 1.6.9 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an IDAT chunk with a length of zero. | |
| Modificada | Media (6.5) | 4.7% | — | Libpng | 12/1/2014 | 17/6/2026 | The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c. | |
| Modificada | Media (4.3) | 3.4% | — | Canonical Ubuntu LinuxLibpngOpensuseRedhat Libpng+1 | 13/8/2012 | 16/6/2026 | The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image. | |
| Modificada | Alta (7.5) | 3.1% | — | Libpng | 22/7/2012 | 16/6/2026 | Off-by-one error in the png_formatted_warning function in pngerror.c in libpng 1.5.4 through 1.5.7 might allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unspecified vectors, which trigger a stack-based buffer overflow. | |
| Modificada | Media (6.8) | 6.5% | — | Libpng | 29/5/2012 | 16/6/2026 | The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted text chunk in a PNG image file, which triggers a memory allocation failure that… | |
| Modificada | Alta (8.8) | 3.6% | — | Google ChromeRedhat Gluster StorageRedhat StorageRedhat Storage FOR Public Cloud+9 | 22/3/2012 | 16/6/2026 | Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file, a different vulnerability… | |
| Modificada | Baja (2.6) | 3.6% | — | Greg Roelofs Libpng | 17/1/2012 | 16/6/2026 | The png_handle_cHRM function in pngrutil.c in libpng 1.5.4, when color-correction support is enabled, allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a malformed PNG image containing a cHRM chunk associated with a certain zero value. | |
| Modificada | Media (5) | 1.5% | — | Libpng | 31/8/2011 | 16/6/2026 | Memory leak in the embedded_profile_len function in pngwutil.c in libpng before 1.2.39beta5 allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embedded profile length. NOTE: this is due to an incomplete fix for… | |
| Modificada | Media (5) | 1.2% | — | Libpng | 31/8/2011 | 16/6/2026 | Memory leak in pngwutil.c in libpng 1.2.13beta1, and other versions before 1.2.15beta3, allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embedded profile length. | |
| Modificada | Alta (8.8) | 4.2% | — | LibpngFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux | 17/7/2011 | 16/6/2026 | The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other… | |
| Modificada | Media (6.5) | 3.9% | — | LibpngFedoraproject FedoraDebian Linux | 17/7/2011 | 16/6/2026 | The png_err function in pngerror.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 makes a function call using a NULL pointer argument instead of an empty-string argument, which allows remote attackers to cause a denial of service (application crash) via a crafted PNG… | |
| Modificada | Alta (8.8) | 3.3% | — | LibpngFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux | 17/7/2011 | 16/6/2026 | Buffer overflow in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4, when used by an application that calls the png_rgb_to_gray function but not the png_set_expand function, allows remote attackers to overwrite memory with an arbitrary amount of data, and possibly have… | |
| Modificada | Media (6.5) | 3.5% | — | LibpngFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux | 17/7/2011 | 16/6/2026 | The png_format_buffer function in pngerror.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 allows remote attackers to cause a denial of service (application crash) via a crafted PNG image that triggers an out-of-bounds read during the copying of error-message data.… | |
| Modificada | Media (6.8) | 5.6% | — | Libpng | 18/1/2011 | 16/6/2026 | pngrtran.c in libpng 1.5.x before 1.5.1 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted palette-based PNG image that triggers a buffer overflow, related to the png_do_expand_palette function, the png_do_rgb_to_gray function, and an integer… | |
| Modificada | Media (6.5) | 2.6% | — | LibpngApple ItunesApple SafariApple Iphone OS+8 | 30/6/2010 | 16/6/2026 | Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks. | |
| Modificada | Crítica (9.8) | 43% | 💥 Exploit | LibpngGoogle ChromeApple ItunesApple Safari+13 | 30/6/2010 | 16/6/2026 | Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row. |