CVE-2009-0040

The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush and other applications, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file that triggers a free of an uninitialized pointer in (1) the png_read_png function, (2) pCAL chunk handling, or (3) setup of 16-bit gamma tables.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
Affected Products (NVD)
VendorProductVersion
libpnglibpng
𝑥
< 1.0.43
libpnglibpng
1.2.0 ≤
𝑥
< 1.2.35
appleiphone_os
𝑥
< 3.0
applemac_os_x
𝑥
< 10.5.8
opensuseopensuse
10.3
opensuseopensuse
11.0
opensuseopensuse
11.1
suselinux_enterprise
9.0
suselinux_enterprise
10.0
debiandebian_linux
4.0
debiandebian_linux
5.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
dapper
Fixed 1.5.dfsg+1.5.0.15~prepatch080614k-0ubuntu1
released
gutsy
Fixed 2.0.0.21~tb.21+nobinonly-0ubuntu0.7.10.1
released
hardy
ignored
intrepid
dne
jaunty
dne
firefox-3.0
dapper
dne
gutsy
ignored
hardy
Fixed 3.0.7+nobinonly-0ubuntu0.8.04.1
released
intrepid
Fixed 3.0.7+nobinonly-0ubuntu0.8.10.1
released
jaunty
Fixed 3.0.7+nobinonly-0ubuntu1
released
firefox-3.5
dapper
dne
gutsy
dne
hardy
dne
intrepid
dne
jaunty
Fixed 3.5+nobinonly-0ubuntu0.9.04.1
released
iceape
dapper
dne
gutsy
ignored
hardy
dne
intrepid
dne
jaunty
dne
icedove
dapper
dne
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
libpng
dapper
Fixed 1.2.8rel-5ubuntu0.4
released
gutsy
Fixed 1.2.15~beta5-2ubuntu0.2
released
hardy
Fixed 1.2.15~beta5-3ubuntu0.1
released
intrepid
Fixed 1.2.27-1ubuntu0.1
released
jaunty
Fixed 1.2.27-2ubuntu2
released
mozilla-thunderbird
dapper
ignored
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
seamonkey
dapper
dne
gutsy
dne
hardy
ignored
intrepid
ignored
jaunty
ignored
thunderbird
dapper
dne
gutsy
ignored
hardy
ignored
intrepid
ignored
jaunty
ignored
xulrunner
dapper
dne
gutsy
ignored
hardy
ignored
intrepid
ignored
jaunty
ignored
xulrunner-1.9
dapper
dne
gutsy
ignored
hardy
Fixed 1.9.0.7+nobinonly-0ubuntu0.8.04.1
released
intrepid
Fixed 1.9.0.7+nobinonly-0ubuntu0.8.10.1
released
jaunty
Fixed 1.9.0.7+nobinonly-0ubuntu1
released
xulrunner-1.9.1
dapper
dne
gutsy
dne
hardy
dne
intrepid
dne
jaunty
Fixed 1.9.1+nobinonly-0ubuntu0.9.04.1
released
References