Back to search
CVE-2012-4432
Published: Oct 1, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecified vectors related to "palette reduction."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
55566
vdb-entry
x_refsource_BID
http://optipng.sourceforge.net/
x_refsource_CONFIRM
optipng-palette-code-execution(78743)
vdb-entry
x_refsource_XF
[oss-security] 20120917 CVE request: OptiPNG Palette Reduction Use-After-Free Vulnerability
mailing-list
x_refsource_MLIST
http://optipng.hg.sourceforge.net/hgweb/optipng/optipng/rev/f1d5d44670a2
x_refsource_CONFIRM
50654
third-party-advisory
x_refsource_SECUNIA
http://sourceforge.net/news/?group_id=151404
x_refsource_CONFIRM
[oss-security] 20120917 Re: CVE request: OptiPNG Palette Reduction Use-After-Free Vulnerability
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now