The png_handle_sCAL function in pngrutil.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 does not properly handle invalid sCAL chunks, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted PNG image that triggers the reading of uninitialized memory.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2011-07-17T20:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2011-07-11T00:00:00
Link: CVE-2011-2692
JSON object: View
NVD Information
Status : Modified
Published: 2011-07-17T20:55:01.623
Modified: 2023-02-13T01:20:03.373
Link: CVE-2011-2692
JSON object: View
Redhat Information
No data.
CWE