7.5
CVSSv2

CVE-2006-3334

Published: 30/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the png_decompress_chunk function in pngrutil.c in libpng prior to 1.2.12 allows context-dependent malicious users to cause a denial of service and possibly execute arbitrary code via unspecified vectors related to "chunk error processing," possibly involving the "chunk_name".

Vulnerable Product Search on Vulmon Subscribe to Product

greg roelofs libpng 1.2.3

greg roelofs libpng 1.2.4

greg roelofs libpng 1.2.5

greg roelofs libpng 1.2.10

greg roelofs libpng 1.2.2

greg roelofs libpng 1.2.9

greg roelofs libpng

greg roelofs libpng 1.2.0

greg roelofs libpng 1.2.1

greg roelofs libpng 1.2.7rc1

greg roelofs libpng 1.2.8

greg roelofs libpng 1.2.6

greg roelofs libpng 1.2.7

Vendor Advisories

Debian Bug report logs - #398706 libpng: CVE-2006-5793: malformed sPLT chunks may blow away your browser Package: libpng; Maintainer for libpng is Anibal Monsalve Salazar <anibal@debianorg>; Reported by: Aníbal Monsalve Salazar <anibal@debianorg> Date: Wed, 15 Nov 2006 07:48:11 UTC Severity: grave Tags: security ...
Debian Bug report logs - #377298 libpng: CVE-2006-3334: DoS/buffer overflow to code execution Package: libpng; Maintainer for libpng is Anibal Monsalve Salazar <anibal@debianorg>; Reported by: Alec Berryman <alec@thenednet> Date: Sat, 8 Jul 2006 03:18:02 UTC Severity: grave Tags: fixed, patch, security Found in v ...