[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-3048Date: (C)2012-05-29   (M)2024-04-19


The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted text chunk in a PNG image file, which triggers a memory allocation failure that is not properly handled, leading to a heap-based buffer overflow.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 6.8
Exploit Score: 8.6
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
SECTRACK-1026879
SECUNIA-48587
SECUNIA-48644
SECUNIA-48665
SECUNIA-48721
SECUNIA-48983
SECUNIA-49660
BID-52830
OSVDB-80822
APPLE-SA-2012-09-19-1
APPLE-SA-2012-09-19-2
DSA-2446
FEDORA-2012-4902
FEDORA-2012-5079
FEDORA-2012-5080
FEDORA-2012-5515
FEDORA-2012-5518
FEDORA-2012-5526
GLSA-201206-15
MDVSA-2012:046
RHSA-2012:0523
USN-1417-1
http://support.apple.com/kb/HT5501
http://support.apple.com/kb/HT5503
http://www.libpng.org/pub/png/libpng.html
http://www.libpng.org/pub/png/src/libpng-1.5.10-README.txt
libpng-pngsettext2-code-execution(74494)

CPE    143
cpe:/a:libpng:libpng:1.0.13
cpe:/a:libpng:libpng:1.2.38
cpe:/a:libpng:libpng:1.0.12
cpe:/a:libpng:libpng:1.2.39
...
CWE    1
CWE-119
OVAL    17
oval:org.secpod.oval:def:1300031
oval:org.secpod.oval:def:600774
oval:org.secpod.oval:def:103619
oval:org.secpod.oval:def:103606
...

© SecPod Technologies