Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The sPLT chunk handling code (png_set_sPLT function in pngset.c) in libpng 1.0.6 through 1.2.12 uses a sizeof operator on the wrong data type, which allows context-dependent attackers to cause a denial of service (crash) via malformed sPLT chunks that trigger an out-of-bounds read.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libpng' Graphics Library PNG_SET_SPLT远程拒绝服务攻击漏洞
Vulnerability Description
libpng中的sPLT块处理代码(pngset.c中的png_set_sPLT函数)对错误数据类型使用sizeof操作符,上下文依赖的攻击者可以通过畸形sPLT块触发出界读操作从而发起拒绝服务攻击(崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A