CVE-2012-3425
13.08.2012, 20:55
The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value in a PNG image.Enginsight
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 15.04 |
| canonical | ubuntu_linux | 15.10 |
| libpng | libpng | 1.4.0 |
| libpng | libpng | 1.4.1 |
| libpng | libpng | 1.4.2 |
| libpng | libpng | 1.4.3 |
| libpng | libpng | 1.4.4 |
| libpng | libpng | 1.4.5 |
| libpng | libpng | 1.4.6 |
| libpng | libpng | 1.4.7 |
| libpng | libpng | 1.4.8 |
| libpng | libpng | 1.4.9 |
| opensuse | opensuse | 11.4 |
| opensuse | opensuse | 12.1 |
| libpng | libpng | 1.2.0 |
| libpng | libpng | 1.2.1 |
| libpng | libpng | 1.2.2 |
| libpng | libpng | 1.2.3 |
| libpng | libpng | 1.2.4 |
| libpng | libpng | 1.2.5 |
| libpng | libpng | 1.2.6 |
| libpng | libpng | 1.2.7 |
| libpng | libpng | 1.2.8 |
| libpng | libpng | 1.2.9 |
| libpng | libpng | 1.2.10 |
| libpng | libpng | 1.2.11 |
| libpng | libpng | 1.2.12 |
| libpng | libpng | 1.2.13 |
| libpng | libpng | 1.2.14 |
| libpng | libpng | 1.2.15 |
| libpng | libpng | 1.2.16 |
| libpng | libpng | 1.2.17 |
| libpng | libpng | 1.2.18 |
| libpng | libpng | 1.2.19 |
| libpng | libpng | 1.2.20 |
| libpng | libpng | 1.2.21 |
| libpng | libpng | 1.2.22 |
| libpng | libpng | 1.2.23 |
| libpng | libpng | 1.2.24 |
| libpng | libpng | 1.2.25 |
| libpng | libpng | 1.2.26 |
| libpng | libpng | 1.2.27 |
| libpng | libpng | 1.2.28 |
| libpng | libpng | 1.2.29 |
| libpng | libpng | 1.2.30 |
| libpng | libpng | 1.2.31 |
| libpng | libpng | 1.2.32 |
| libpng | libpng | 1.2.33 |
| libpng | libpng | 1.2.34 |
| libpng | libpng | 1.2.35 |
| libpng | libpng | 1.2.36 |
| libpng | libpng | 1.2.37 |
| libpng | libpng | 1.2.38 |
| libpng | libpng | 1.2.39 |
| libpng | libpng | 1.2.40 |
| libpng | libpng | 1.2.41 |
| libpng | libpng | 1.2.42 |
| libpng | libpng | 1.2.43 |
| libpng | libpng | 1.2.43:devel |
| libpng | libpng | 1.2.44 |
| libpng | libpng | 1.2.45 |
| libpng | libpng | 1.2.45:devel |
| libpng | libpng | 1.2.46 |
| libpng | libpng | 1.2.46:devel |
| libpng | libpng | 1.2.47 |
| libpng | libpng | 1.2.47:beta |
| libpng | libpng | 1.2.48:betas |
| redhat | libpng | 1.2.2-16 |
| redhat | libpng | 1.2.2-20 |
| debian | debian_linux | 6.0 |
| libpng | libpng | 1.5.0:beta |
| libpng | libpng | 1.5.1 |
| libpng | libpng | 1.5.1:beta |
| libpng | libpng | 1.5.2 |
| libpng | libpng | 1.5.2:beta |
| libpng | libpng | 1.5.3:beta |
| libpng | libpng | 1.5.4 |
| libpng | libpng | 1.5.4:beta |
| libpng | libpng | 1.5.5 |
| libpng | libpng | 1.5.5:beta |
| libpng | libpng | 1.5.6 |
| libpng | libpng | 1.5.6:beta |
| libpng | libpng | 1.5.7 |
| libpng | libpng | 1.5.7:beta |
| libpng | libpng | 1.5.8 |
| libpng | libpng | 1.5.8:beta |
| libpng | libpng | 1.5.9 |
| libpng | libpng | 1.5.9:beta |
| libpng | libpng | 1.5.10:beta |
| libpng | libpng | 1.0.0 |
| libpng | libpng | 1.0.1 |
| libpng | libpng | 1.0.2 |
| libpng | libpng | 1.0.3 |
| libpng | libpng | 1.0.5 |
| libpng | libpng | 1.0.6 |
| libpng | libpng | 1.0.7 |
| libpng | libpng | 1.0.8 |
| libpng | libpng | 1.0.9 |
| libpng | libpng | 1.0.10 |
| libpng | libpng | 1.0.11 |
| libpng | libpng | 1.0.12 |
| libpng | libpng | 1.0.13 |
| libpng | libpng | 1.0.14 |
| libpng | libpng | 1.0.15 |
| libpng | libpng | 1.0.16 |
| libpng | libpng | 1.0.17 |
| libpng | libpng | 1.0.18 |
| libpng | libpng | 1.0.19 |
| libpng | libpng | 1.0.20 |
| libpng | libpng | 1.0.21 |
| libpng | libpng | 1.0.22 |
| libpng | libpng | 1.0.23 |
| libpng | libpng | 1.0.24 |
| libpng | libpng | 1.0.25 |
| libpng | libpng | 1.0.26 |
| libpng | libpng | 1.0.27 |
| libpng | libpng | 1.0.28 |
| libpng | libpng | 1.0.29 |
| libpng | libpng | 1.0.30 |
| libpng | libpng | 1.0.31 |
| libpng | libpng | 1.0.32 |
| libpng | libpng | 1.0.33 |
| libpng | libpng | 1.0.34 |
| libpng | libpng | 1.0.35 |
| libpng | libpng | 1.0.37 |
| libpng | libpng | 1.0.38 |
| libpng | libpng | 1.0.39 |
| libpng | libpng | 1.0.40 |
| libpng | libpng | 1.0.41 |
| libpng | libpng | 1.0.42 |
| libpng | libpng | 1.0.43 |
| libpng | libpng | 1.0.44 |
| libpng | libpng | 1.0.45 |
| libpng | libpng | 1.0.46 |
| libpng | libpng | 1.0.47 |
| libpng | libpng | 1.0.48 |
| libpng | libpng | 1.0.50 |
| libpng | libpng | 1.0.51 |
| libpng | libpng | 1.0.52 |
| libpng | libpng | 1.0.53 |
| libpng | libpng | 1.0.54 |
| libpng | libpng | 1.0.55 |
| libpng | libpng | 1.0.55:rc01 |
| libpng | libpng | 1.0.56 |
| libpng | libpng | 1.0.56:devel |
| libpng | libpng | 1.0.57 |
| libpng | libpng | 1.0.57:rc01 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||||||||||||||
| firefox |
| ||||||||||||||||||||||||
| libpng |
| ||||||||||||||||||||||||
| thunderbird |
|
Common Weakness Enumeration
References