png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-02-04T07:00:00
Updated: 2021-10-20T10:38:36
Reserved: 2019-02-04T00:00:00
Link: CVE-2019-7317
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-02-04T08:29:00.447
Modified: 2022-05-23T15:02:40.667
Link: CVE-2019-7317
JSON object: View
Redhat Information
No data.
CWE