cbcvebase.
CVE-2018-13785
published 2018-07-09

CVE-2018-13785: In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant…

medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service.

Affected

22 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debianlibpng1.6< libpng1.6 1.6.34-2 (bookworm)libpng1.6 1.6.34-2 (bookworm)
libpnglibpng
libpnglibpng>= 0 < 1.2.50-1ubuntu2.14.04.31.2.50-1ubuntu2.14.04.3
libpnglibpng>= 0 < 1.2.54-1ubuntu1.11.2.54-1ubuntu1.1
oraclejdk
oraclejdk
oraclejdk
oraclejdk
oraclejre
oraclejre
oraclejre
oraclejre
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_workstation
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv7.5HIGH