Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2862▼ 326 respecto a la semana anterior
Críticas / altas1389▼ 28 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
73 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 4.2% | — | LibpngApple MAC OS XFedoraproject FedoraOpensuse+3 | 3/3/2010 | 16/6/2026 | The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which allows remote attackers to cause a denial of service (memory and CPU… | |
| Modificada | Media (4.3) | 2.3% | — | Libpng | 12/6/2009 | 16/6/2026 | libpng before 1.2.37 does not properly parse 1-bit interlaced images with width values that are not divisible by 8, which causes libpng to include uninitialized bits in certain rows of a PNG file and might allow remote attackers to read portions of sensitive memory via "out-of-bounds pixels" in the file. | |
| Modificada | Media (6.8) | 4.8% | — | LibpngApple Iphone OSApple MAC OS XOpensuse+5 | 22/2/2009 | 16/6/2026 | The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush and other applications, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file that triggers a free of an uninitialized pointer in… | |
| Modificada | Alta (7.1) | 2.3% | — | Libpng | 20/2/2009 | 16/6/2026 | Memory leak in the png_handle_tEXt function in pngrutil.c in libpng before 1.2.33 rc02 and 1.4.0 beta36 allows context-dependent attackers to cause a denial of service (memory exhaustion) via a crafted PNG file. | |
| Modificada | Media (5) | 2.6% | — | LibpngDebian Linux | 15/1/2009 | 16/6/2026 | The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with keywords, related to an implicit cast of the '\0' character constant… | |
| Modificada | Media (4.3) | 3.3% | — | Libpng | 11/9/2008 | 16/6/2026 | Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow context-dependent attackers to cause a denial of service (crash) or have unspecified other impact via a PNG image with crafted zTXt chunks, related to (1) the png_push_read_zTXt function in pngread.c, and possibly related to… | |
| Modificada | Alta (7.5) | 5.5% | — | Libpng | 14/4/2008 | 16/6/2026 | libpng 1.0.6 through 1.0.32, 1.2.0 through 1.2.26, and 1.4.0beta01 through 1.4.0beta19 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG file with zero length "unknown" chunks, which trigger an access of uninitialized memory. | |
| Modificada | Media (4.3) | 3.4% | — | Libpng | 8/10/2007 | 16/6/2026 | Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 and 1.2.x before 1.2.21 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image that prevents a name field from being NULL terminated. | |
| Modificada | Media (4.3) | 2.0% | — | Libpng | 8/10/2007 | 16/6/2026 | Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.2.22 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image, due to an incorrect fix for CVE-2007-5266. | |
| Modificada | Media (5) | 4.8% | — | Libpng | 8/10/2007 | 16/6/2026 | Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which… | |
| Modificada | Media (4.3) | 3.1% | — | LibpngCanonical Ubuntu Linux | 8/10/2007 | 16/6/2026 | pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image. | |
| Modificada | Media (5) | 5.2% | — | PNG Reference Library Libpng | 16/5/2007 | 16/6/2026 | The png_handle_tRNS function in pngrutil.c in libpng before 1.0.25 and 1.2.x before 1.2.17 allows remote attackers to cause a denial of service (application crash) via a grayscale PNG image with a bad tRNS chunk CRC value. | |
| Modificada | Baja (2.6) | 1.8% | — | Greg Roelofs Libpng | 17/11/2006 | 16/6/2026 | The sPLT chunk handling code (png_set_sPLT function in pngset.c) in libpng 1.0.6 through 1.2.12 uses a sizeof operator on the wrong data type, which allows context-dependent attackers to cause a denial of service (crash) via malformed sPLT chunks that trigger an out-of-bounds read. | |
| Modificada | Alta (7.5) | 4.0% | — | Greg Roelofs Libpng | 30/6/2006 | 16/6/2026 | Buffer overflow in the png_decompress_chunk function in pngrutil.c in libpng before 1.2.12 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors related to "chunk error processing," possibly involving the "chunk_name". | |
| Modificada | Media (5) | 3.1% | — | Greg Roelofs Libpng | 31/1/2006 | 16/6/2026 | Heap-based buffer overflow in the alpha strip capability in libpng 1.2.7 allows context-dependent attackers to cause a denial of service (crash) when the png_do_strip_filler function is used to strip alpha channels out of the image. | |
| Modificada | Media (5) | 6.1% | — | Greg Roelofs Libpng | 23/11/2004 | 16/6/2026 | The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (application crash) via a certain PNG image that triggers a null dereference. | |
| Modificada | Media (5) | 6.2% | — | Greg Roelofs Libpng | 23/11/2004 | 16/6/2026 | Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image reading capability in libpng 1.2.5 and earlier allow remote attackers to cause a denial of service (application crash) via a malformed PNG image. | |
| Modificada | Alta (10) | 82% | 💥 Exploit | Greg Roelofs LibpngMicrosoft MSN MessengerMicrosoft Windows Media PlayerMicrosoft Windows Messenger+2 | 23/11/2004 | 16/6/2026 | Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute arbitrary code via malformed PNG images in which (1) the png_handle_tRNS function does not properly validate the length of transparency chunk (tRNS) data, or the (2) png_handle_sBIT or (3)… | |
| Modificada | Alta (7.5) | 3.3% | — | Greg Roelofs Libpng3 | 20/10/2004 | 16/6/2026 | libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execute arbitrary code via a buffer overflow attack. | |
| Modificada | Media (5) | 4.1% | — | LibpngOpenpkgRedhat LibpngRedhat Enterprise Linux+2 | 18/8/2004 | 16/6/2026 | The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message. | |
| Modificada | Alta (7.5) | 6.1% | — | Greg Roelofs Libpng | 26/12/2002 | 16/6/2026 | Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a buffer overflow attack on the row buffers. | |
| Modificada | Alta (7.5) | 3.0% | — | Greg Roelofs LibpngGreg Roelofs Libpng3 | 12/8/2002 | 16/6/2026 | Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating systems, may allow attackers to cause a denial of service and possibly execute arbitrary code, a different vulnerability than CVE-2002-0728. | |
| Modificada | Media (5) | 2.1% | — | Greg Roelofs Libpng | 12/8/2002 | 16/6/2026 | Buffer overflow in the progressive reader for libpng 1.2.x before 1.2.4, and 1.0.x before 1.0.14, allows attackers to cause a denial of service (crash) via a PNG data stream that has more IDAT data than indicated by the IHDR chunk. |