Back to search
CVE-2015-8126
Published: Nov 13, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a small bit-depth value in an IHDR (aka image header) chunk in a PNG image.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
APPLE-SA-2016-03-21-5
vendor-advisory
x_refsource_APPLE
openSUSE-SU-2016:0664
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0103
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0684
vendor-advisory
x_refsource_SUSE
https://support.apple.com/HT206167
x_refsource_CONFIRM
openSUSE-SU-2015:2135
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2015:2136
vendor-advisory
x_refsource_SUSE
77568
vdb-entry
x_refsource_BID
openSUSE-SU-2016:0272
vendor-advisory
x_refsource_SUSE
FEDORA-2015-5e52306c9c
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-ec2ddd15d7
vendor-advisory
x_refsource_FEDORA
GLSA-201611-08
vendor-advisory
x_refsource_GENTOO
openSUSE-SU-2016:0279
vendor-advisory
x_refsource_SUSE
DSA-3507
vendor-advisory
x_refsource_DEBIAN
FEDORA-2015-501493d853
vendor-advisory
x_refsource_FEDORA
1034142
vdb-entry
x_refsource_SECTRACK
http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html
x_refsource_CONFIRM
RHSA-2016:1430
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-1d87313b7c
vendor-advisory
x_refsource_FEDORA
DSA-3399
vendor-advisory
x_refsource_DEBIAN
RHSA-2015:2595
vendor-advisory
x_refsource_REDHAT
RHSA-2015:2596
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2015:2262
vendor-advisory
x_refsource_SUSE
FEDORA-2015-8a1243db75
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-13668fff74
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2016:0270
vendor-advisory
x_refsource_SUSE
https://kc.mcafee.com/corporate/index?page=content&id=SB10148
x_refsource_CONFIRM
openSUSE-SU-2015:2100
vendor-advisory
x_refsource_SUSE
[oss-security] 20151112 CVE request: libpng buffer overflow in png_set_PLTE
mailing-list
x_refsource_MLIST
SUSE-SU-2016:0269
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0105
vendor-advisory
x_refsource_SUSE
FEDORA-2015-97fc1797fa
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2016:0729
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0263
vendor-advisory
x_refsource_SUSE
SUSE-SU-2016:0256
vendor-advisory
x_refsource_SUSE
FEDORA-2016-43735c33a7
vendor-advisory
x_refsource_FEDORA
SUSE-SU-2016:0665
vendor-advisory
x_refsource_SUSE
GLSA-201603-09
vendor-advisory
x_refsource_GENTOO
FEDORA-2016-9a1c707b10
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:2263
vendor-advisory
x_refsource_SUSE
RHSA-2016:0057
vendor-advisory
x_refsource_REDHAT
RHSA-2016:0055
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-c80ec85542
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:2099
vendor-advisory
x_refsource_SUSE
USN-2815-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2016:0056
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2016:0268
vendor-advisory
x_refsource_SUSE
FEDORA-2015-4ad4998d00
vendor-advisory
x_refsource_FEDORA
RHSA-2015:2594
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-233750b6ab
vendor-advisory
x_refsource_FEDORA
https://code.google.com/p/chromium/issues/detail?id=560291
x_refsource_CONFIRM
http://googlechromereleases.blogspot.com/2016/03/stable-channel-update.html
x_refsource_CONFIRM
SUSE-SU-2016:0265
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0104
vendor-advisory
x_refsource_SUSE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now