CVE Database
/

CVE-2015-8472

Back to search

CVE-2015-8472

Published: Jan 21, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

Buffer overflow in the png_set_PLTE function in libpng before 1.0.65, 1.1.x and 1.2.x before 1.2.55, 1.3.x, 1.4.x before 1.4.18, 1.5.x before 1.5.25, and 1.6.x before 1.6.20 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a small bit-depth value in an IHDR (aka image header) chunk in a PNG image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8126.

VendorProductVersions

n/a

n/a

affected
n/a

References

APPLE-SA-2016-03-21-5
vendor-advisory
x_refsource_APPLE
openSUSE-SU-2016:0272
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0279
vendor-advisory
x_refsource_SUSE
RHSA-2016:1430
vendor-advisory
x_refsource_REDHAT
RHSA-2015:2595
vendor-advisory
x_refsource_REDHAT
RHSA-2015:2596
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2016:0270
vendor-advisory
x_refsource_SUSE
SUSE-SU-2016:0269
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2016:0263
vendor-advisory
x_refsource_SUSE
SUSE-SU-2016:0256
vendor-advisory
x_refsource_SUSE
78624
vdb-entry
x_refsource_BID
RHSA-2016:0057
vendor-advisory
x_refsource_REDHAT
RHSA-2016:0055
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-c80ec85542
vendor-advisory
x_refsource_FEDORA
DSA-3443
vendor-advisory
x_refsource_DEBIAN
RHSA-2016:0056
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2016:0268
vendor-advisory
x_refsource_SUSE
FEDORA-2015-4ad4998d00
vendor-advisory
x_refsource_FEDORA
RHSA-2015:2594
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-233750b6ab
vendor-advisory
x_refsource_FEDORA
SUSE-SU-2016:0265
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now