CVE-2007-5268
pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image.
- Affected products
- Libpng
- Libpng
- < 1.0.29, 1.2.21
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 3.1% (86th percentile)
- NVD status
- Modified
- Published
- 2007-10-08
CVE-2007-5268 at NVD
1 known exploit for CVE-2007-5268
Proof-of-concept code and exploit modules indexed by Sploitus