CVE-2010-1205 EXPLOIT
9.8
CRITICAL · CVSS 3.1 · EPSS 43.4% (pctl 99)
Patch early
A public exploit exists.
Description
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 43.38% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-120 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2010-06-30 |
| Last modified | 2026-06-16 |
Affected (17)
| Vendor | Product |
|---|---|
| apple | iphone os |
| apple | itunes |
| apple | mac os x |
| apple | mac os x server |
| apple | safari |
| canonical | ubuntu linux |
| debian | debian linux |
| fedoraproject | fedora |
| chrome | |
| libpng | libpng |
| mozilla | firefox |
| mozilla | seamonkey |
| mozilla | thunderbird |
| opensuse | opensuse |
| suse | linux enterprise server |
| vmware | player |
| vmware | workstation |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | libpng 1.4.2 - Denial of Service | 2010-07-20 |
References
- http://blackberry.com/btsc/KB27244
- http://code.google.com/p/chromium/issues/detail?id=45983
- http://googlechromereleases.blogspot.com/2010/07/stable-channel-update.html
- http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng%3Ba=commitdiff%3Bh=188eb6b42602bf7d7ae708a21897923b6a83fe7c#patch18
- http://lists.apple.com/archives/security-announce/2010//Aug/msg00003.html
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html
- http://lists.apple.com/archives/security-announce/2011//Mar/msg00004.html
- http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.html
- http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044283.html
- http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044397.html
- http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html
- http://lists.vmware.com/pipermail/security-announce/2010/000105.html
- http://secunia.com/advisories/40302
- http://secunia.com/advisories/40336
- http://secunia.com/advisories/40472
- http://secunia.com/advisories/40547
- http://secunia.com/advisories/41574
- http://secunia.com/advisories/42314
- http://secunia.com/advisories/42317
→ the Explorer · watch your stack · NVD