Back to search
CVE-2013-7353
Published: May 6, 2014
Modified: Jun 9, 2025
PUBLISHED
Description
Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng before 1.5.14beta08 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a crafted image, which triggers a heap-based buffer overflow.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://sourceforge.net/p/libpng/bugs/199/
x_refsource_CONFIRM
openSUSE-SU-2014:0604
vendor-advisory
x_refsource_SUSE
67345
vdb-entry
x_refsource_BID
[oss-security] 20140410 CVE-2013-7353 CVE-2013-7354 libpng integer overflows
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now