CVE Vulnerabilities

CVE-2012-4432

Published: Oct 01, 2012 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecified vectors related to palette reduction.

Affected Software

Name Vendor Start Version End Version
Optipng Optipng 0.7.0 (including) 0.7.0 (including)
Optipng Optipng 0.7.1 (including) 0.7.1 (including)
Optipng Optipng 0.7.2 (including) 0.7.2 (including)
Optipng Optipng hg (including) hg (including)
Optipng Ubuntu upstream *

References