5
CVSSv2

CVE-2013-7353

Published: 06/05/2014 Updated: 31/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng prior to 1.5.14beta08 allows context-dependent malicious users to cause a denial of service (segmentation fault and crash) via a crafted image, which triggers a heap-based buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

libpng libpng 1.5.0

libpng libpng 1.5.1

libpng libpng 1.5.5

libpng libpng 1.5.9

libpng libpng

libpng libpng 1.5.12

libpng libpng 1.5.2

libpng libpng 1.5.7

libpng libpng 1.5.11

libpng libpng 1.5.10

libpng libpng 1.5.6

libpng libpng 1.5.13

libpng libpng 1.5.3

libpng libpng 1.5.4

libpng libpng 1.5.8

Vendor Advisories

Integer overflow in the png_set_unknown_chunks function in libpng/pngsetc in libpng before 1514beta08 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a crafted image, which triggers a heap-based buffer overflow ...