CVE Database
/

CVE-2004-0599

Back to search

CVE-2004-0599

Published: Aug 5, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image reading capability in libpng 1.2.5 and earlier allow remote attackers to cause a denial of service (application crash) via a malformed PNG image.

VendorProductVersions

n/a

n/a

affected
n/a

References

2004-0040
vendor-advisory
x_refsource_TRUSTIX
VU#477512
third-party-advisory
x_refsource_CERT-VN
200663
vendor-advisory
x_refsource_SUNALERT
oval:org.mitre.oval:def:1479
vdb-entry
signature
x_refsource_OVAL
RHSA-2004:421
vendor-advisory
x_refsource_REDHAT
RHSA-2004:402
vendor-advisory
x_refsource_REDHAT
GLSA-200408-22
vendor-advisory
x_refsource_GENTOO
22958
third-party-advisory
x_refsource_SECUNIA
FLSA:2089
vendor-advisory
x_refsource_FEDORA
FLSA:1943
vendor-advisory
x_refsource_FEDORA
lilbpng-integer-bo(16896)
vdb-entry
x_refsource_XF
SCOSA-2004.16
vendor-advisory
x_refsource_SCO
RHSA-2004:429
vendor-advisory
x_refsource_REDHAT
15495
vdb-entry
x_refsource_BID
DSA-536
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:10938
vdb-entry
signature
x_refsource_OVAL
APPLE-SA-2004-09-09
vendor-advisory
x_refsource_APPLE
DSA-570
vendor-advisory
x_refsource_DEBIAN
SSRT4778
vendor-advisory
x_refsource_HP
MDKSA-2006:213
vendor-advisory
x_refsource_MANDRIVA
TA04-217A
third-party-advisory
x_refsource_CERT
MDKSA-2006:212
vendor-advisory
x_refsource_MANDRIVA
DSA-571
vendor-advisory
x_refsource_DEBIAN
CLA-2004:856
vendor-advisory
x_refsource_CONECTIVA
10857
vdb-entry
x_refsource_BID
SUSE-SA:2004:023
vendor-advisory
x_refsource_SUSE
GLSA-200408-03
vendor-advisory
x_refsource_GENTOO
VU#160448
third-party-advisory
x_refsource_CERT-VN
MDKSA-2004:079
vendor-advisory
x_refsource_MANDRAKE
VU#286464
third-party-advisory
x_refsource_CERT-VN
22957
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now