[Forgot Password]
Login  Register Subscribe

23631

 
 

127000

 
 

102010

 
 

909

 
 

81059

 
 

123

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML view JSON

CVE-2011-3048Date: (C)2012-05-29   (M)2018-02-19


The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted text chunk in a PNG image file, which triggers a memory allocation failure that is not properly handled, leading to a heap-based buffer overflow.

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score  : CVSS Score  : 6.8
Exploit Score: Exploit Score: 8.6
Impact Score : Impact Score : 6.4
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: Access Vector: NETWORK
Attack Complexity: Access Complexity: MEDIUM
Privileges Required: Authentication: NONE
User Interaction: Confidentiality: PARTIAL
Scope: Integrity: PARTIAL
Confidentiality: Availability: PARTIAL
Integrity:  
Availability:  
  





Reference:
SECTRACK-1026879
SECUNIA-48587
SECUNIA-48644
SECUNIA-48665
SECUNIA-48721
SECUNIA-48983
SECUNIA-49660
BID-52830
OSVDB-80822
APPLE-SA-2012-09-19-1
APPLE-SA-2012-09-19-2
DSA-2446
FEDORA-2012-4902
FEDORA-2012-5079
FEDORA-2012-5080
FEDORA-2012-5515
FEDORA-2012-5518
FEDORA-2012-5526
GLSA-201206-15
IAVM:2012-A-0152
MDVSA-2012:046
RHSA-2012:0523
USN-1417-1
http://support.apple.com/kb/HT5501
http://support.apple.com/kb/HT5503
http://www.libpng.org/pub/png/libpng.html
http://www.libpng.org/pub/png/src/libpng-1.5.10-README.txt
libpng-pngsettext2-code-execution(74494)

CPE    143
cpe:/a:libpng:libpng:1.5.1:beta
cpe:/a:libpng:libpng:1.5.3:beta
cpe:/a:libpng:libpng:1.5.0:beta
cpe:/a:libpng:libpng:1.5.4:beta
...
CWE    1
CWE-119
OVAL    15
oval:org.secpod.oval:def:500791
oval:org.secpod.oval:def:10704
oval:org.secpod.oval:def:1300031
oval:org.secpod.oval:def:700832
...

© 2013 SecPod Technologies