CVE-2002-0660Improper Restriction of Operations within the Bounds of a Memory Buffer in Roelofs Libpng

5 documents5 sources
Severity
7.5HIGHNVD
EPSS
1.0%
top 23.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 12
Latest updateApr 30

Description

Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating systems, may allow attackers to cause a denial of service and possibly execute arbitrary code, a different vulnerability than CVE-2002-0728.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-qv23-5x46-j87h: Buffer overflow in libpng 12022-04-30
CVEList
CVE-2002-0660: Buffer overflow in libpng 12002-08-10

📋Vendor Advisories

1
Red Hat
security flaw2002-08-05

💬Community

1
Bugzilla
CVE-2002-0660 security flaw2018-08-16
CVE-2002-0660 — Greg Roelofs Libpng vulnerability | cvebase