[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96174

 
 

909

 
 

78077

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2011-3048

Date: (C)2012-05-29   (M)2017-08-29
 
CVSS Score: 6.8Access Vector: NETWORK
Exploitability Subscore: 8.6Access Complexity: MEDIUM
Impact Subscore: 6.4Authentication: NONE
 Confidentiality: PARTIAL
 Integrity: PARTIAL
 Availability: PARTIAL











The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted text chunk in a PNG image file, which triggers a memory allocation failure that is not properly handled, leading to a heap-based buffer overflow.

Reference:
SECTRACK-1026879
SECUNIA-48587
SECUNIA-48644
SECUNIA-48665
SECUNIA-48721
SECUNIA-48983
SECUNIA-49660
BID-52830
OSVDB-80822
APPLE-SA-2012-09-19-1
APPLE-SA-2012-09-19-2
DSA-2446
FEDORA-2012-4902
FEDORA-2012-5079
FEDORA-2012-5080
FEDORA-2012-5515
FEDORA-2012-5518
FEDORA-2012-5526
GLSA-201206-15
IAVM:2012-A-0152
RHSA-2012:0523
USN-1417-1
http://support.apple.com/kb/HT5501
http://support.apple.com/kb/HT5503
http://www.libpng.org/pub/png/libpng.html
http://www.libpng.org/pub/png/src/libpng-1.5.10-README.txt
libpng-pngsettext2-code-execution(74494)

CPE    143
cpe:/a:libpng:libpng:1.0.13
cpe:/a:libpng:libpng:1.2.38
cpe:/a:libpng:libpng:1.0.12
cpe:/a:libpng:libpng:1.2.39
...
CWE    1
CWE-119
OVAL    15
oval:org.secpod.oval:def:500791
oval:org.secpod.oval:def:10704
oval:org.secpod.oval:def:1300031
oval:org.secpod.oval:def:700832
...

© 2013 SecPod Technologies