LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.52, an out-of-bounds read vulnerability in libpngs simplified API allows reading up to 1012 bytes beyond the png_sRGB_base[512] array when processing valid palette PNG images with partial transparency and gamma correction. The PNG files that trigger this vulnerability are valid per the PNG specification; the bug is in libpngs internal state management. Upgrade to libpng 1.6.52 or later.
The product reads data past the end, or before the beginning, of the intended buffer.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Libpng | Libpng | * | 1.6.52 (excluding) |
| Red Hat Enterprise Linux 10 | RedHat | libpng-2:1.6.40-8.el10_1.1 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | libpng-2:1.6.40-8.el10_0.1 | * |
| Red Hat Enterprise Linux 8 | RedHat | mingw-libpng-0:1.6.34-1.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | libpng-2:1.6.34-9.el8_10 | * |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | RedHat | libpng-2:1.6.34-8.el8_2.1 | * |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | libpng-2:1.6.34-8.el8_4.1 | * |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | libpng-2:1.6.34-8.el8_4.1 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | libpng-2:1.6.34-8.el8_6.1 | * |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | libpng-2:1.6.34-8.el8_6.1 | * |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | libpng-2:1.6.34-8.el8_6.1 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | libpng-2:1.6.34-8.el8_8.1 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | libpng-2:1.6.34-8.el8_8.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | libpng-2:1.6.37-12.el9_7.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | libpng-2:1.6.37-12.el9_7.1 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | libpng-2:1.6.37-12.el9_0.1 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | libpng-2:1.6.37-12.el9_2.1 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | libpng-2:1.6.37-12.el9_4.1 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | libpng-2:1.6.37-12.el9_6.1 | * |
| Red Hat Discovery 2 | RedHat | discovery/discovery-ui-rhel9:sha256:899bd7f941512d54af8ab369ca03028a7d27d05887ccce24bc12c7ccd3e4dbee | * |
| Chromium-browser | Ubuntu | upstream | * |
| Libpng1.6 | Ubuntu | jammy | * |
| Libpng1.6 | Ubuntu | noble | * |
| Libpng1.6 | Ubuntu | plucky | * |
| Libpng1.6 | Ubuntu | questing | * |
| Libpng1.6 | Ubuntu | upstream | * |
| Thunderbird | Ubuntu | plucky | * |