Multiple buffer overflows in the (1) pngsetPLTE and (2) pnggetPLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a small bit-depth value in an IHDR (aka image header) chunk in a PNG image.
{
"binaries": [
{
"binary_version": "1.2.50-1ubuntu2.14.04.1",
"binary_name": "libpng12-0"
},
{
"binary_version": "1.2.50-1ubuntu2.14.04.1",
"binary_name": "libpng12-dev"
},
{
"binary_version": "1.2.50-1ubuntu2.14.04.1",
"binary_name": "libpng3"
}
],
"availability": "No subscription required"
}