5
CVSSv2

CVE-2006-0481

Published: 31/01/2006 Updated: 11/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Heap-based buffer overflow in the alpha strip capability in libpng 1.2.7 allows context-dependent malicious users to cause a denial of service (crash) when the png_do_strip_filler function is used to strip alpha channels out of the image.

Vulnerable Product Search on Vulmon Subscribe to Product

greg roelofs libpng 1.2.7

Vendor Advisories

Debian Bug report logs - #352902 CVE-2006-0481: PNG_Set_Strip_Alpha Buffer Overflow Package: libpng; Maintainer for libpng is Anibal Monsalve Salazar <anibal@debianorg>; Reported by: Geoff Crompton <geoffcrompton@strategicdatacomau> Date: Wed, 15 Feb 2006 02:03:01 UTC Severity: grave Tags: security, woody Found ...