Executive Summary

Informations
NameCVE-2007-5268First vendor Publication2007-10-08
VendorCveLast vendor Modification2011-03-07

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:N/I:N/A:P)
Cvss Base Score4.3Attack RangeNetwork
Cvss Impact Score2.9Attack ComplexityMedium
Cvss Expoit Score8.6AuthentificationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5268

CPE : Common Platform Enumeration

TypeDescriptionCount
Application2

Open Source Vulnerability Database (OSVDB)

idDescription
38273libpng pngrtran.c Crafted PNG Multiple Method DoS

Internal Sources (Detail)

SourceUrl
APPLEhttp://lists.apple.com/archives/security-announce/2008//May/msg00001.html
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
BIDhttp://www.securityfocus.com/bid/25956
BUGTRAQhttp://www.securityfocus.com/archive/1/archive/1/483582/100/0/threaded
http://www.securityfocus.com/archive/1/archive/1/489135/100/0/threaded
CERThttp://www.us-cert.gov/cas/techalerts/TA08-150A.html
CONFIRMhttp://android-developers.blogspot.com/2008/03/android-sdk-update-m5-rc15-rel...
http://bugs.gentoo.org/show_bug.cgi?id=195261
http://docs.info.apple.com/article.html?artnum=307562
http://support.avaya.com/elmodocs2/security/ASA-2009-208.htm
https://issues.rpath.com/browse/RPL-1814
GENTOOhttp://www.gentoo.org/security/en/glsa/glsa-200711-08.xml
http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml
MANDRIVAhttp://www.mandriva.com/security/advisories?name=MDKSA-2007:217
MISChttp://www.coresecurity.com/?action=item&id=2148
MLISThttp://sourceforge.net/mailarchive/forum.php?thread_name=3.0.6.32.20071004082...
http://sourceforge.net/mailarchive/message.php?msg_name=5122753600C3E94F87FBD...
http://sourceforge.net/mailarchive/message.php?msg_name=e56ccc8f0709140846k24...
SECUNIAhttp://secunia.com/advisories/27093
http://secunia.com/advisories/27284
http://secunia.com/advisories/27405
http://secunia.com/advisories/27529
http://secunia.com/advisories/27629
http://secunia.com/advisories/27746
http://secunia.com/advisories/29420
http://secunia.com/advisories/30161
http://secunia.com/advisories/30430
http://secunia.com/advisories/35302
http://secunia.com/advisories/35386
SLACKWAREhttp://slackware.com/security/viewer.php?l=slackware-security&y=2007&...
SUNALERThttp://sunsolve.sun.com/search/document.do?assetkey=1-66-259989-1
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020521.1-1
UBUNTUhttp://www.ubuntu.com/usn/usn-538-1
VUPENhttp://www.vupen.com/english/advisories/2007/3390
http://www.vupen.com/english/advisories/2008/0924/references
http://www.vupen.com/english/advisories/2008/1697
http://www.vupen.com/english/advisories/2009/1462
http://www.vupen.com/english/advisories/2009/1560

Alert History

If you want to see full details history, please login or register.
0
DateInformations
2013-05-11 10:38:19
  • Multiple Updates