← Back

CVE-2018-14048

nvd nist
Published: Jul 13, 2018Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommended error handling for png_read_image.

Affected (9)

Products: Libpng: Libpng · Oracle: Jdk, Jre
1 product
Libpng
2 products
Jdk
Jre
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.6.34
Configuration B
8 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 1.6.0 update201
Version 1.7.0 update191
Version 1.8.0 update181
Version 11.0.0
Oracle
Version 1.6.0 update201
Version 1.7.0 update191
Version 1.8.0 update181
Version 11.0.0

References (12)

Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.