CVE-2006-7244

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
31/08/2011
Last modified:
07/11/2023

Description

Memory leak in pngwutil.c in libpng 1.2.13beta1, and other versions before 1.2.15beta3, allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embedded profile length.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libpng:libpng:*:beta2:*:*:*:*:*:* 1.2.15 (including)
cpe:2.3:a:libpng:libpng:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:a:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:d:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:e:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:f:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:g:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:h:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:i:*:*:*:*:*:*
cpe:2.3:a:libpng:libpng:1.0.6:j:*:*:*:*:*:*