cpe:/a:libpng:libpng:1.5.20 cpe:/a:libpng:libpng:1.6.0 cpe:/a:libpng:libpng:1.6.0:beta cpe:/a:libpng:libpng:1.6.1 cpe:/a:libpng:libpng:1.6.1:beta cpe:/a:libpng:libpng:1.6.2 cpe:/a:libpng:libpng:1.6.2:beta cpe:/a:libpng:libpng:1.6.3 cpe:/a:libpng:libpng:1.6.3:beta cpe:/a:libpng:libpng:1.6.4 cpe:/a:libpng:libpng:1.6.4:beta cpe:/a:libpng:libpng:1.6.5 cpe:/a:libpng:libpng:1.6.6 cpe:/a:libpng:libpng:1.6.7 cpe:/a:libpng:libpng:1.6.7:beta cpe:/a:libpng:libpng:1.6.8 cpe:/a:libpng:libpng:1.6.8:beta cpe:/a:libpng:libpng:1.6.9 cpe:/a:libpng:libpng:1.6.9:beta cpe:/a:libpng:libpng:1.6.10 cpe:/a:libpng:libpng:1.6.10:beta cpe:/a:libpng:libpng:1.6.11 cpe:/a:libpng:libpng:1.6.11:beta cpe:/a:libpng:libpng:1.6.12:beta cpe:/a:libpng:libpng:1.6.13 cpe:/a:libpng:libpng:1.6.13:beta cpe:/a:libpng:libpng:1.6.14 cpe:/a:libpng:libpng:1.6.14:beta cpe:/a:libpng:libpng:1.6.15 cpe:/a:libpng:libpng:1.6.15:beta cpe:/o:apple:mac_os_x:10.11.3 cpe:/o:oracle:solaris:11.2 CVE-2015-0973 2015-01-18T13:59:03.020-05:00 2016-10-20T14:46:05.357-04:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2016-10-20T12:40:19.693-04:00 SECUNIA 62725 APPLE APPLE-SA-2016-03-21-5 MLIST [oss-security] 20150109 Re: CVE Request: libpng 1.6.15 Heap Overflow MLIST [oss-security] 20150110 Re: CVE Request: libpng 1.6.15 Heap Overflow MLIST [png-mng-announce] 20141222 libpng-1.5.21 and 1.6.16 are available MISC http://tfpwn.com/files/libpng_heap_overflow_1.6.15.txt CONFIRM http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html CONFIRM https://support.apple.com/HT206167 Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.