CVE-2010-1205
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
- Affected products
- Red Hat, Suse, Vmware Workstation, Itunes, Libpng
- Libpng
- < 1.2.44, 1.4.3
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 43.4% (99th percentile)
- Weakness
- CWE-120
- NVD status
- Modified
- Published
- 2010-06-30
CVE-2010-1205 at NVD
7 known exploits for CVE-2010-1205
Proof-of-concept code and exploit modules indexed by Sploitus