Back to search
CVE-2019-9210
Published: Feb 27, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer overflow upon encountering an invalid PNG size, which results in an attempted memcpy to write into a buffer that is too small. (There is also a heap-based buffer over-read.)
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[debian-lts-announce] 20190302 [SECURITY] [DLA 1702-1] advancecomp security update
mailing-list
x_refsource_MLIST
https://sourceforge.net/p/advancemame/bugs/277/
x_refsource_MISC
FEDORA-2019-ee98058a22
vendor-advisory
x_refsource_FEDORA
USN-3936-1
vendor-advisory
x_refsource_UBUNTU
USN-3936-2
vendor-advisory
x_refsource_UBUNTU
[debian-lts-announce] 20211229 [SECURITY] [DLA 2868-1] advancecomp security update
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now