Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libpng vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-1932
Multiple integer overflows in the (1) user_info_callback, (2) user_endrow_callback, and (3) gst_pngdec_task functions (ext/libpng/gstpngdec.c) in GStreamer Good Plug-ins (aka gst-plugins-good or gstreamer-plugins-good) 0.10.15 allow remote malicious users to cause a denial of ser...
Gstreamer Good Plug-ins 0.10.15
NA
CVE-2009-0771
The layout engine in Mozilla Firefox prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey 1.1.15 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger memory corruption and assertion failure...
Mozilla Seamonkey 1.1.10
Mozilla Seamonkey 1.0.3
Mozilla Firefox 2.0.0.12
Mozilla Thunderbird 2.0.0.4
Mozilla Seamonkey 1.1.8
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.1.7
Mozilla Thunderbird 2.0.0.6
Mozilla Seamonkey 1.0.6
Mozilla Firefox 1.5.0.6
Mozilla Seamonkey 1.0.9
Mozilla Seamonkey
Mozilla Seamonkey 1.1.3
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Seamonkey 1.0
Mozilla Firefox 1.5.0.11
Mozilla Thunderbird 2.0.0.18
Mozilla Thunderbird 2.0.0.9
Mozilla Seamonkey 1.1.5
Mozilla Seamonkey 1.0.7
NA
CVE-2009-0772
The layout engine in Mozilla Firefox 2 and 3 prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey 1.1.15 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to nsCSSStyleSheet::GetOwnerNode, events, an...
Mozilla Firefox 2.0.0.16
Mozilla Firefox 2.0.0.15
Mozilla Firefox 2.0.0.8
Mozilla Firefox 2.0.0.7
Mozilla Firefox 2.0
Mozilla Thunderbird 2.0.0.17
Mozilla Thunderbird 2.0.0.0
Mozilla Seamonkey 1.0
Mozilla Seamonkey 1.0.8
Mozilla Seamonkey 1.0.9
Mozilla Seamonkey 1.1.4
Mozilla Seamonkey 1.1.5
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.5
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0.6
Mozilla Firefox 1.5.0.12
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.0.3
Mozilla Firefox 2.0.0.18
Mozilla Firefox 3.0.3
Mozilla Firefox 2.0.0.17
NA
CVE-2009-0773
The JavaScript engine in Mozilla Firefox prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey 1.1.15 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via (1) a splice of an array that contains "some non-set elemen...
Mozilla Firefox 3.0
Mozilla Firefox 3.0.1
Mozilla Firefox 2.0.0.13
Mozilla Firefox 2.0.0.12
Mozilla Firefox 2.0.0.4
Mozilla Firefox 2.0.0.3
Mozilla Thunderbird 2.0.0.12
Mozilla Thunderbird 2.0.0.9
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0.3
Mozilla Firefox 2.0.0.11
Mozilla Firefox 2.0.0.10
Mozilla Firefox 2.0.0.9
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.1
Mozilla Thunderbird 2.0.0.6
Mozilla Thunderbird 2.0.0.5
Mozilla Firefox 2.0.0.17
Mozilla Firefox 2.0.0.16
Mozilla Firefox 2.0.0.8
Mozilla Firefox 2.0.0.7
Mozilla Firefox 2.0
NA
CVE-2009-0774
The layout engine in Mozilla Firefox 2 and 3 prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey 1.1.15 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to gczeal, a different vulnerability than CV...
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0.3
Mozilla Firefox 2.0.0.11
Mozilla Firefox 2.0.0.10
Mozilla Firefox 2.0.0.3
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.1
Mozilla Thunderbird 2.0.0.6
Mozilla Thunderbird 2.0.0.5
Mozilla Seamonkey 1.0.5
Mozilla Seamonkey 1.0.6
Mozilla Seamonkey 1.1.1
Mozilla Seamonkey 1.1.2
Mozilla Seamonkey 1.1.3
Mozilla Seamonkey 1.1.10
Mozilla Seamonkey 1.1.11
Mozilla Firefox 1.0.2
Mozilla Firefox 1.0.3
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.0.7
Mozilla Firefox 1.5.0.8
NA
CVE-2009-0775
Double free vulnerability in Mozilla Firefox prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey prior to 1.1.15 allows remote malicious users to execute arbitrary code via "cloned XUL DOM elements which were linked as a parent and child," which are not properl...
Mozilla Firefox 3.0
Mozilla Firefox 2.0.0.14
Mozilla Firefox 2.0.0.13
Mozilla Firefox 2.0.0.5
Mozilla Firefox 2.0.0.4
Mozilla Thunderbird 2.0.0.14
Mozilla Thunderbird 2.0.0.12
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.0.2
Mozilla Seamonkey 1.1
Mozilla Seamonkey 1.1.7
Mozilla Seamonkey 1.1.8
Mozilla Firefox
Mozilla Firefox 1.0
Mozilla Firefox 1.0.8
Mozilla Firefox 1.5
Mozilla Firefox 1.5.0.4
Mozilla Firefox 1.5.0.5
Mozilla Firefox 2.0.0.20
Mozilla Thunderbird 2.0.0.18
Mozilla Firefox 2.0.0.16
Mozilla Firefox 2.0.0.15
NA
CVE-2009-0776
nsIRDFService in Mozilla Firefox prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey prior to 1.1.15 allows remote malicious users to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.
Mozilla Firefox 3.0.3
Mozilla Firefox 2.0.0.17
Mozilla Firefox 2.0.0.9
Mozilla Firefox 2.0.0.8
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0
Mozilla Thunderbird 2.0.0.5
Mozilla Thunderbird 2.0.0.4
Mozilla Thunderbird 2.0.0.0
Mozilla Seamonkey 1.0.7
Mozilla Seamonkey 1.0.8
Mozilla Seamonkey 1.1.3
Mozilla Seamonkey 1.1.4
Mozilla Seamonkey 1.1.12
Mozilla Firefox 3.0.4
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.5
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.0.12
Mozilla Firefox 1.5.0.9
Mozilla Firefox 2.0.0.18
Mozilla Thunderbird
NA
CVE-2009-0777
Mozilla Firefox prior to 3.0.7, Thunderbird prior to 2.0.0.21, and SeaMonkey prior to 1.1.15 decode invisible characters when they are displayed in the location bar, which causes an incorrect address to be displayed and makes it easier for remote malicious users to spoof URLs and...
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0.2
Mozilla Firefox 2.0.0.12
Mozilla Firefox 2.0.0.11
Mozilla Firefox 2.0.0.3
Mozilla Firefox 2.0.0.2
Mozilla Thunderbird 2.0.0.9
Mozilla Thunderbird 2.0.0.6
Mozilla Seamonkey 1.0.3
Mozilla Seamonkey 1.0.5
Mozilla Seamonkey 1.0.6
Mozilla Seamonkey 1.1.1
Mozilla Seamonkey 1.1.2
Mozilla Seamonkey 1.1.9
Mozilla Seamonkey 1.1.10
Mozilla Firefox 3.0
Mozilla Firefox 2.0.0.14
Mozilla Firefox 2.0.0.13
Mozilla Firefox 2.0.0.5
Mozilla Firefox 2.0.0.4
Mozilla Thunderbird 2.0.0.14
Mozilla Thunderbird 2.0.0.12
NA
CVE-2009-0040
The PNG reference library (aka libpng) prior to 1.0.43, and 1.2.x prior to 1.2.35, as used in pngcrush and other applications, allows context-dependent malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file that ...
Libpng Libpng
Apple Iphone Os
Apple Mac Os X
Opensuse Opensuse 11.1
Opensuse Opensuse 11.0
Opensuse Opensuse 10.3
Suse Linux Enterprise Server 10
Suse Linux Enterprise Desktop 10
Suse Linux Enterprise 10.0
Suse Linux Enterprise 9.0
Debian Debian Linux 5.0
Debian Debian Linux 4.0
Fedoraproject Fedora 10
Fedoraproject Fedora 9
NA
CVE-2008-6218
Memory leak in the png_handle_tEXt function in pngrutil.c in libpng prior to 1.2.33 rc02 and 1.4.0 beta36 allows context-dependent malicious users to cause a denial of service (memory exhaustion) via a crafted PNG file.
Libpng Libpng 1.2.1
Libpng Libpng 1.2.15
Libpng Libpng 1.2.19
Libpng Libpng 1.2.0
Libpng Libpng 1.2.10
Libpng Libpng 1.2.17
Libpng Libpng 1.2.11
Libpng Libpng 1.2.13
Libpng Libpng 1.2.23
Libpng Libpng 1.2.24
Libpng Libpng 1.2.21
Libpng Libpng 1.2.22
Libpng Libpng 1.2.20
Libpng Libpng 1.2.25
Libpng Libpng 1.2.3
Libpng Libpng 1.2.4
Libpng Libpng 1.2.28
Libpng Libpng 1.2.31
Libpng Libpng 1.2.2
Libpng Libpng 1.2.26
Libpng Libpng 1.2.9
Libpng Libpng 1.2.8
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4651
CVE-2024-34255
elevation of privilege
CVE-2024-25529
CVE-2024-4671
NULL pointer dereference
CVE-2024-25527
template injection
CVE-2008-0166
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »