Vulnerabilities
Vulnerable Software
Libpng:  >> Libpng  >> 1.6.36  Security Vulnerabilities
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
CVSS Score
5.3
EPSS Score
0.004
Published
2019-02-04
png_create_info_struct in png.c in libpng 1.6.36 has a memory leak, as demonstrated by pngcp. NOTE: a third party has stated "I don't think it is libpng's job to free this buffer.
CVSS Score
6.5
EPSS Score
0.004
Published
2019-01-11


Contact Us

Shodan ® - All rights reserved