Security Advisory

CVE-2015-0973

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-01-18 18:00:00
Last updated 2025-06-09 15:25:54
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.