CVE-2010-1205

Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 94%
VendorProductVersion
libpnglibpng
𝑥
< 1.2.44
libpnglibpng
1.4.0 ≤
𝑥
< 1.4.3
googlechrome
𝑥
< 5.0.375.99
appleitunes
𝑥
< 10.2
applesafari
𝑥
< 5.0.4
appleiphone_os
2.0 ≤
𝑥
≤ 4.1
applemac_os_x
10.6.0 ≤
𝑥
< 10.6.4
applemac_os_x_server
10.6.0 ≤
𝑥
< 10.6.4
opensuseopensuse
11.1
opensuseopensuse
11.2
vmwareplayer
2.5 ≤
𝑥
< 2.5.5
vmwareplayer
3.1 ≤
𝑥
< 3.1.2
vmwareworkstation
6.5.0 ≤
𝑥
< 6.5.5
vmwareworkstation
7.1 ≤
𝑥
< 7.1.2
canonicalubuntu_linux
6.06
canonicalubuntu_linux
8.04
canonicalubuntu_linux
9.04
canonicalubuntu_linux
9.10
canonicalubuntu_linux
10.04
debiandebian_linux
5.0
mozillafirefox
𝑥
< 3.5.11
mozillafirefox
3.5.12 ≤
𝑥
< 3.6.7
mozillaseamonkey
𝑥
< 2.0.6
mozillathunderbird
𝑥
< 3.0.6
mozillathunderbird
3.0.7 ≤
𝑥
< 3.1.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
tuxonice-userui
bookworm/contrib
1.1+dfsg1.gc3bdd83-4
fixed
bullseye/contrib
1.1+dfsg1.gc3bdd83-4
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
lucid
Fixed 6.0.472.53~r57914-0ubuntu0.10.04.1
released
karmic
dne
jaunty
dne
hardy
dne
dapper
dne
firefox
lucid
Fixed 3.6.7+build2+nobinonly-0ubuntu0.10.04.1
released
karmic
dne
jaunty
dne
hardy
ignored
dapper
ignored
libpng
lucid
Fixed 1.2.42-1ubuntu2.1
released
karmic
Fixed 1.2.37-1ubuntu0.2
released
jaunty
Fixed 1.2.27-2ubuntu2.2
released
hardy
Fixed 1.2.15~beta5-3ubuntu0.3
released
dapper
Fixed 1.2.8rel-5ubuntu0.6
released
thunderbird
lucid
Fixed 3.0.6+build2+nobinonly-0ubuntu0.10.04.1
released
karmic
not-affected
jaunty
not-affected
intrepid
not-affected
hardy
not-affected
dapper
dne
xulrunner-1.9.2
lucid
Fixed 1.9.2.7+build2+nobinonly-0ubuntu0.10.04.1
released
karmic
Fixed 1.9.2.7+build2+nobinonly-0ubuntu0.9.10.2
released
jaunty
Fixed 1.9.2.7+build2+nobinonly-0ubuntu0.9.04.2
released
hardy
Fixed 1.9.2.7+build2+nobinonly-0ubuntu0.8.04.2
released
dapper
dne
References