CVE-2011-3045

CVSS v2.0 6.8 (Medium)
68% Progress
EPSS 16.85 % (96th)
16.85% Progress
Affected Products 13
Advisories 16

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file, a different vulnerability than CVE-2011-3026.

Weaknesses
CWE-190
Integer Overflow or Wraparound
Related CVEs
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2012-03-22 16:55:01
(12 years ago)
Updated Date
2023-11-07 02:08:24
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Google Chrome prior 17.0.963.83 version cpe:2.3:a:google:chrome < 17.0.963.83

Configuration #2

    CPE23 From Up To
  Redhat Gluster Storage 2.0 cpe:2.3:a:redhat:gluster_storage:2.0
  Redhat Storage 2.0 cpe:2.3:a:redhat:storage:2.0
  Redhat Storage for Public Cloud 2.0 cpe:2.3:a:redhat:storage_for_public_cloud:2.0
  Debian Linux 6.0 cpe:2.3:o:debian:debian_linux:6.0
  Fedoraproject Fedora 15 cpe:2.3:o:fedoraproject:fedora:15
  Fedoraproject Fedora 16 cpe:2.3:o:fedoraproject:fedora:16
  Fedoraproject Fedora 17 cpe:2.3:o:fedoraproject:fedora:17
  Opensuse 12.1 cpe:2.3:o:opensuse:opensuse:12.1
  Redhat Enterprise Linux 5.0 cpe:2.3:o:redhat:enterprise_linux:5.0
  Redhat Enterprise Linux 6.0 cpe:2.3:o:redhat:enterprise_linux:6.0
  Redhat Enterprise Linux Desktop 5.0 cpe:2.3:o:redhat:enterprise_linux_desktop:5.0
  Redhat Enterprise Linux Desktop 6.0 cpe:2.3:o:redhat:enterprise_linux_desktop:6.0
  Redhat Enterprise Linux Server Aus 6.2 cpe:2.3:o:redhat:enterprise_linux_server_aus:6.2
  Redhat Enterprise Linux Server Eus 6.2 cpe:2.3:o:redhat:enterprise_linux_server_eus:6.2
  Redhat Enterprise Linux Workstation 5.0 cpe:2.3:o:redhat:enterprise_linux_workstation:5.0
  Redhat Enterprise Linux Workstation 6.0 cpe:2.3:o:redhat:enterprise_linux_workstation:6.0

Configuration #3

    CPE23 From Up To
  Libpng prior 1.5.10 version cpe:2.3:a:libpng:libpng < 1.5.10
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...