Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libpng ‘png_do_expand_palette’函数空指针逆向引用拒绝服务漏洞
Vulnerability Description
libpng是一个可对PNG图形文件实现创建、读写等操作的PNG参考库。 libpng 1.6.8 beta及之前的版本中的‘png_do_expand_palette’函数中存在安全漏洞。远程攻击者可借助零字节的PLTE数据块或空调色板,利用该漏洞造成拒绝服务(空指针逆向引用和应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A