Back to search
CVE-2011-3328
Published: Jan 17, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
The png_handle_cHRM function in pngrutil.c in libpng 1.5.4, when color-correction support is enabled, allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a malformed PNG image containing a cHRM chunk associated with a certain zero value.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://libpng.org/pub/png/libpng.html
x_refsource_CONFIRM
APPLE-SA-2012-09-19-1
vendor-advisory
x_refsource_APPLE
http://support.apple.com/kb/HT5503
x_refsource_CONFIRM
http://support.apple.com/kb/HT5130
x_refsource_CONFIRM
VU#477046
third-party-advisory
x_refsource_CERT-VN
APPLE-SA-2012-02-01-1
vendor-advisory
x_refsource_APPLE
https://bugzilla.redhat.com/show_bug.cgi?id=740864
x_refsource_CONFIRM
http://support.apple.com/kb/HT5281
x_refsource_CONFIRM
APPLE-SA-2012-05-09-1
vendor-advisory
x_refsource_APPLE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now