Vulnerability Name: | CVE-2007-5269 (CCN-37019) | ||||||||||||||||||||||||||||||||||||||||
Assigned: | 2007-09-11 | ||||||||||||||||||||||||||||||||||||||||
Published: | 2007-09-11 | ||||||||||||||||||||||||||||||||||||||||
Updated: | 2018-10-15 | ||||||||||||||||||||||||||||||||||||||||
Summary: | Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations. | ||||||||||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||||||||||
Vulnerability Type: | CWE-20 CWE-125 | ||||||||||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||||||||||||||||||||||||||||||
References: | Source: CONFIRM Type: UNKNOWN http://android-developers.blogspot.com/2008/03/android-sdk-update-m5-rc15-released.html Source: CONFIRM Type: UNKNOWN http://bugs.gentoo.org/show_bug.cgi?id=195261 Source: MITRE Type: CNA CVE-2007-5269 Source: CONFIRM Type: UNKNOWN http://docs.info.apple.com/article.html?artnum=307562 Source: APPLE Type: UNKNOWN APPLE-SA-2008-05-28 Source: APPLE Type: UNKNOWN APPLE-SA-2008-03-18 Source: FULLDISC Type: UNKNOWN 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues. Source: MLIST Type: UNKNOWN [security-announce] 20080317 VMSA-2008-0005 Updated VMware Workstation, VMware Player, VMware Server, VMware ACE, and VMware Fusion resolve critical security issues Source: CCN Type: RHSA-2007-0992 Moderate: libpng security update Source: CCN Type: SA27093 libpng Multiple Denial of Service Vulnerabilities Source: SECUNIA Type: Vendor Advisory 27093 Source: SECUNIA Type: UNKNOWN 27284 Source: SECUNIA Type: UNKNOWN 27369 Source: SECUNIA Type: UNKNOWN 27391 Source: SECUNIA Type: UNKNOWN 27405 Source: SECUNIA Type: UNKNOWN 27492 Source: SECUNIA Type: UNKNOWN 27529 Source: SECUNIA Type: UNKNOWN 27629 Source: CCN Type: SA27662 Avaya Products libpng Denial of Service Vulnerability Source: SECUNIA Type: UNKNOWN 27662 Source: SECUNIA Type: UNKNOWN 27746 Source: SECUNIA Type: UNKNOWN 27965 Source: CCN Type: SA29412 VMware Server Multiple Vulnerabilities Source: CCN Type: SA29420 Mac OS X Security Update Fixes Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 29420 Source: CCN Type: SA30161 Gentoo ltsp Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 30161 Source: CCN Type: SA30430 Apple Mac OS X Security Update Fixes Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 30430 Source: CCN Type: SA31712 VMware ESX Server Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 31712 Source: CCN Type: SA31713 VMware ESX / ESXi Server Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 31713 Source: SECUNIA Type: UNKNOWN 34388 Source: CCN Type: SA35302 Sun Solaris libpng Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 35302 Source: CCN Type: SA35386 Avaya CMS Solaris libpng Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 35386 Source: GENTOO Type: UNKNOWN GLSA-201209-25 Source: CCN Type: SECTRACK ID: 1018849 libpng Chunk Handling Bugs Let Remote Users Deny Service Source: SLACKWARE Type: UNKNOWN SSA:2007-325-01 Source: CCN Type: png-mng-implement Mailing List, 2007-10-04 12:23 Libpng-1.2.21 and libpng-1.0.29 released Source: MLIST Type: Patch [png-mng-implement] 20071004 Libpng-1.2.21 and libpng-1.0.29 released Source: CCN Type: SourceForge.net PNG reference library: libpng Source: CCN Type: Sun Alert ID: 259989 Security Vulnerability in Solaris libpng(3) May Allow Denial of Service (DoS) or Privilege Escalation Source: SUNALERT Type: UNKNOWN 259989 Source: SUNALERT Type: UNKNOWN 1020521 Source: CCN Type: Apple Web site About the security content of Security Update 2008-003 / Mac OS X 10.5.3 Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2007-460.htm Source: CCN Type: ASA-2007-460 libpng security update (RHSA-2007-0992) Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm Source: CCN Type: ASA-2009-208 Security Vulnerability in Solaris libpng(3) May Allow Denial of Service (DoS) or Privilege Escalation (Sun 259989) Source: CCN Type: CORE-2008-0124 Multiple vulnerabilities in Google's Android SDK Source: MISC Type: UNKNOWN http://www.coresecurity.com/?action=item&id=2148 Source: DEBIAN Type: UNKNOWN DSA-1750 Source: DEBIAN Type: DSA-1750 libpng -- several vulnerabilities Source: CCN Type: GLSA-200711-08 libpng: Multiple Denials of Service Source: GENTOO Type: UNKNOWN GLSA-200711-08 Source: CCN Type: GLSA-200805-07 Linux Terminal Server Project: Multiple vulnerabilities Source: GENTOO Type: UNKNOWN GLSA-200805-07 Source: MANDRIVA Type: UNKNOWN MDKSA-2007:217 Source: SUSE Type: UNKNOWN SUSE-SR:2007:025 Source: REDHAT Type: UNKNOWN RHSA-2007:0992 Source: BUGTRAQ Type: UNKNOWN 20071112 FLEA-2007-0065-1 libpng Source: BUGTRAQ Type: UNKNOWN 20080304 CORE-2008-0124: Multiple vulnerabilities in Google's Android SDK Source: BUGTRAQ Type: UNKNOWN 20080318 VMSA-2008-0005 Updated VMware Workstation, VMware Player, VMware Server, VMware ACE, and VMware Fusion resolve critical security issues Source: BUGTRAQ Type: UNKNOWN 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues. Source: BID Type: UNKNOWN 25956 Source: CCN Type: BID-25956 Libpng Library Multiple Remote Denial of Service Vulnerabilities Source: BID Type: UNKNOWN 28276 Source: CCN Type: BID-28276 VMware Server 1.0.5 and Workstation 6.0.3 Multiple Vulnerabilities Source: SECTRACK Type: UNKNOWN 1018849 Source: CCN Type: USN-538-1 libpng vulnerabilities Source: UBUNTU Type: UNKNOWN USN-538-1 Source: CCN Type: USN-730-1 libpng vulnerabilities Source: CERT Type: US Government Resource TA08-150A Source: CONFIRM Type: UNKNOWN http://www.vmware.com/security/advisories/VMSA-2008-0005.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/security/advisories/VMSA-2008-0014.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/player/doc/releasenotes_player.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/player2/doc/releasenotes_player2.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/server/doc/releasenotes_server.html Source: CCN Type: VMware Server Web site Key Features in VMware Server, What's New in Version 1.0.5 Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html Source: CONFIRM Type: UNKNOWN http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html Source: CCN Type: Vmware Workstation Web site VMware Workstation 6.0 Release Notes, New in Version 6.0.3 Source: VUPEN Type: UNKNOWN ADV-2007-3390 Source: VUPEN Type: UNKNOWN ADV-2008-0905 Source: VUPEN Type: UNKNOWN ADV-2008-0924 Source: VUPEN Type: UNKNOWN ADV-2008-1697 Source: VUPEN Type: UNKNOWN ADV-2008-2466 Source: VUPEN Type: UNKNOWN ADV-2009-1462 Source: VUPEN Type: UNKNOWN ADV-2009-1560 Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=327791 Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=337461 Source: XF Type: UNKNOWN libpng-multiple-functions-dos(37019) Source: CONFIRM Type: UNKNOWN https://issues.rpath.com/browse/RPL-1814 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10614 Source: FEDORA Type: UNKNOWN FEDORA-2007-734 Source: FEDORA Type: UNKNOWN FEDORA-2007-2521 Source: FEDORA Type: UNKNOWN FEDORA-2007-2666 Source: SUSE Type: SUSE-SR:2007:025 SUSE Security Summary Report | ||||||||||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration RedHat 6: Configuration RedHat 7: Configuration RedHat 8: Configuration RedHat 9: ![]() | ||||||||||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||
BACK |