CVE-2008-5907
published 2009-01-15CVE-2008-5907: The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an…
PriorityP423medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
2.56%
83.6th percentile
The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with keywords, related to an implicit cast of the '\0' character constant to a NULL pointer. NOTE: some sources incorrectly report this as a double free vulnerability.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| libpng | libpng | < 1.0.42 | 1.0.42 |
| libpng | libpng | >= 1.2.0 < 1.2.34 | 1.2.34 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_redhat5.0MEDIUM
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libpng vulnerabilities
vendor_ubuntu·2009-03-06·CVSS 4.3
CVE-2008-5907 [MEDIUM] libpng vulnerabilities
Title: libpng vulnerabilities
Summary: libpng vulnerabilities
It was discovered that libpng did not properly perform bounds checking in
certain operations. An attacker could send a specially crafted PNG image and
cause a denial of service in applications linked against libpng. This issue
only affected Ubuntu 8.04 LTS. (CVE-2007-5268, CVE-2007-5269)
Tavis Ormandy discovered that libpng did not properly initialize memory. If a
user or automated system were tricked into opening a crafted PNG image, an
attacker could cause a denial of service via application crash, or possibly
execute arbitrary code with the privileges of the user invoking the program.
This issue did not affect Ubuntu 8.10. (CVE-2008-1382)
Harald van Dijk discovered an off-by-one error in libpng. An attacker could
could ca
Red Hat
libpng,libpng10: Zeroing value of an arbitrary memory location in utilities for writing PNG files
vendor_redhat·2008-11-26·CVSS 5.0
CVE-2008-5907 [MEDIUM] libpng,libpng10: Zeroing value of an arbitrary memory location in utilities for writing PNG files
libpng,libpng10: Zeroing value of an arbitrary memory location in utilities for writing PNG files
The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with keywords, related to an implicit cast of the '\0' character constant to a NULL pointer. NOTE: some sources incorrectly report this as a double free vulnerability.
Statement: Red Hat does not consider this bug to be a security issue. For a more detailed explanation, please see the following bug:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2008-5907
GHSA
GHSA-598m-m5h8-fc92: The png_check_keyword function in pngwutil
ghsa_unreviewed·2022-05-14
CVE-2008-5907 [MEDIUM] GHSA-598m-m5h8-fc92: The png_check_keyword function in pngwutil
The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with keywords, related to an implicit cast of the '\0' character constant to a NULL pointer. NOTE: some sources incorrectly report this as a double free vulnerability.
No detection rules found.
No public exploits indexed.
http://libpng.sourceforge.net/index.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.htmlhttp://openwall.com/lists/oss-security/2009/01/09/1http://secunia.com/advisories/34320http://secunia.com/advisories/34388http://security.gentoo.org/glsa/glsa-200903-28.xmlhttp://sourceforge.net/mailarchive/forum.php?thread_name=4B6F0239C13D0245820603C036D180BC79FBAA%40CABOTUKEXCH01.cabot.local&forum_name=png-mng-implementhttp://www.debian.org/security/2009/dsa-1750http://www.mandriva.com/security/advisories?name=MDVSA-2009:051https://exchange.xforce.ibmcloud.com/vulnerabilities/48128http://libpng.sourceforge.net/index.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.htmlhttp://openwall.com/lists/oss-security/2009/01/09/1http://secunia.com/advisories/34320http://secunia.com/advisories/34388http://security.gentoo.org/glsa/glsa-200903-28.xmlhttp://sourceforge.net/mailarchive/forum.php?thread_name=4B6F0239C13D0245820603C036D180BC79FBAA%40CABOTUKEXCH01.cabot.local&forum_name=png-mng-implementhttp://www.debian.org/security/2009/dsa-1750http://www.mandriva.com/security/advisories?name=MDVSA-2009:051https://exchange.xforce.ibmcloud.com/vulnerabilities/48128
2009-01-15
Published