VulnerabilityModified
CVE-2010-1205
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CRITICAL 9.8EPSS 43.4%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 43.4%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 43.38% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-120
- Affected
- libpng/libpng · google/chrome · apple/itunes · apple/safari · apple/iphone os · apple/mac os x · apple/mac os x server · fedoraproject/fedora · opensuse/opensuse · suse/linux enterprise server · vmware/player · vmware/workstation · canonical/ubuntu linux · debian/debian linux · mozilla/firefox · mozilla/seamonkey · mozilla/thunderbird
- Source
- cve@mitre.org
References
- http://blackberry.com/btsc/KB27244Broken Link
- http://code.google.com/p/chromium/issues/detail?id=45983Exploit, Issue Tracking, Mailing List, Third Party Advisory
- http://googlechromereleases.blogspot.com/2010/07/stable-channel-update.htmlRelease Notes, Third Party Advisory
- http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng%3Ba=commitdiff%3Bh=188eb6b42602bf7d7ae708a21897923b6a83fe7c#patch18
- http://lists.apple.com/archives/security-announce/2010//Aug/msg00003.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2011//Mar/msg00004.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.htmlMailing List, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044283.htmlMailing List, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044397.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.htmlMailing List, Third Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2010/000105.htmlMailing List, Patch, Third Party Advisory
- http://secunia.com/advisories/40302Broken Link
- http://secunia.com/advisories/40336Broken Link
- http://secunia.com/advisories/40472Broken Link
- http://secunia.com/advisories/40547Broken Link
- http://secunia.com/advisories/41574Broken Link
- http://secunia.com/advisories/42314Broken Link
- http://secunia.com/advisories/42317Broken Link
- http://slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.613061Mailing List, Patch, Third Party Advisory
- http://support.apple.com/kb/HT4312Third Party Advisory
- http://support.apple.com/kb/HT4435Broken Link
- http://support.apple.com/kb/HT4456Third Party Advisory
- http://support.apple.com/kb/HT4457Third Party Advisory
- http://support.apple.com/kb/HT4554Third Party Advisory
- http://support.apple.com/kb/HT4566Broken Link
- http://trac.webkit.org/changeset/61816Patch, Third Party Advisory
- http://www.debian.org/security/2010/dsa-2072Third Party Advisory
- http://www.libpng.org/pub/png/libpng.htmlProduct, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.