Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 and 1.2.x before 1.2.21 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image that prevents a name field from being NULL terminated.

Project Subscriptions

Vendors Products
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
Link Providers
http://android-developers.blogspot.com/2008/03/android-sdk-update-m5-rc15-released.html cve-icon cve-icon
http://bugs.gentoo.org/show_bug.cgi?id=195261 cve-icon cve-icon
http://docs.info.apple.com/article.html?artnum=307562 cve-icon cve-icon
http://lists.apple.com/archives/security-announce/2008//May/msg00001.html cve-icon cve-icon
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html cve-icon cve-icon
http://secunia.com/advisories/27284 cve-icon cve-icon
http://secunia.com/advisories/27529 cve-icon cve-icon
http://secunia.com/advisories/27629 cve-icon cve-icon
http://secunia.com/advisories/27746 cve-icon cve-icon
http://secunia.com/advisories/29420 cve-icon cve-icon
http://secunia.com/advisories/30161 cve-icon cve-icon
http://secunia.com/advisories/30430 cve-icon cve-icon
http://secunia.com/advisories/35302 cve-icon cve-icon
http://secunia.com/advisories/35386 cve-icon cve-icon
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.520323 cve-icon cve-icon
http://sourceforge.net/mailarchive/forum.php?thread_name=5122753600C3E94F87FBDFFCC090D1FF0400EA68%40MERCMBX07.na.sas.com&forum_name=png-mng-implement cve-icon cve-icon
http://sourceforge.net/mailarchive/message.php?msg_name=e56ccc8f0709140846k24e9a040r81623783b6b1c00f%40mail.gmail.com cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-66-259989-1 cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020521.1-1 cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm cve-icon cve-icon
http://www.coresecurity.com/?action=item&id=2148 cve-icon cve-icon
http://www.gentoo.org/security/en/glsa/glsa-200711-08.xml cve-icon cve-icon
http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2007:217 cve-icon cve-icon
http://www.securityfocus.com/archive/1/483582/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/archive/1/489135/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/25957 cve-icon cve-icon
http://www.us-cert.gov/cas/techalerts/TA08-150A.html cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/0924/references cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/1697 cve-icon cve-icon
http://www.vupen.com/english/advisories/2009/1462 cve-icon cve-icon
http://www.vupen.com/english/advisories/2009/1560 cve-icon cve-icon
https://issues.rpath.com/browse/RPL-1814 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2007-5266 cve-icon
History

Wed, 28 May 2025 14:30:00 +0000

Type Values Removed Values Added
References

Thu, 22 May 2025 04:30:00 +0000


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T15:24:42.345Z

Reserved: 2007-10-08T04:00:00.000Z

Link: CVE-2007-5266

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2007-10-08T21:17:00.000

Modified: 2025-04-09T00:30:58.490

Link: CVE-2007-5266

cve-icon Redhat

Severity : Moderate

Publid Date: 2007-09-11T00:00:00Z

Links: CVE-2007-5266 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses