Home
Packages
Report
Policy
Login
Signup
« List of all CVEs
CVE-2017-12652
Published:
7/10/2019
Last updated:
6/9/2025
Reserved:
8/7/2017
libpng before 1.6.32 does not properly check the length of chunks against the user limit.
CNA assigner:
mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca)
Requested by:
n/a
Metrics
Version
Score
Severity
Vector String
3.1
9.8
Critical
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Opam packages affected (4)
conf-gd
conf-libpng
grib
qrencode
Products affected (1)
Product
Vendor
Version
n/a
n/a
All versions
References (11)
https://github.com/glennrp/libpng/blob/df7e9dae0c4aac63d55361e35709c864fa1b8363/ANNOUNCE
http://www.securityfocus.com/bid/109269
https://support.f5.com/csp/article/K88124225
https://support.f5.com/csp/article/K88124225?utm_source=f5support&%3Butm_medium=RSS
https://security.netapp.com/advisory/ntap-20220506-0003/
https://github.com/pnggroup/libpng/commit/347538efbdc21b8df684ebd92d37400b3ce85d55
https://github.com/glennrp/libpng/blob/df7e9dae0c4aac63d55361e35709c864fa1b8363/ANNOUNCE
http://www.securityfocus.com/bid/109269
https://support.f5.com/csp/article/K88124225
https://support.f5.com/csp/article/K88124225?utm_source=f5support&%3Butm_medium=RSS
https://security.netapp.com/advisory/ntap-20220506-0003/