📦 Libpng

by Libpng

🔍 What is Libpng?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-66293

HIGH CVSS 7.1 Dec 3, 2025

CVE-2025-66293 is an out-of-bounds read vulnerability in libpng's simplified API that allows reading up to 1012 bytes beyond allocated memory when processing valid PNG images with specific characteris...

CVE-2025-64720

HIGH CVSS 7.1 Nov 25, 2025

This CVE describes an out-of-bounds read vulnerability in LIBPNG library versions 1.6.0 through 1.6.50. When processing palette images with PNG_FLAG_OPTIMIZE_ALPHA enabled, the library incorrectly app...

CVE-2025-65018

HIGH CVSS 7.1 Nov 25, 2025

A heap buffer overflow vulnerability in libpng's simplified API allows attackers to execute arbitrary code or cause denial of service by crafting malicious 16-bit interlaced PNG files. This affects ap...

CVE-2025-28162

MEDIUM CVSS 5.5 Jan 27, 2026

A buffer overflow vulnerability in libpng versions 1.6.43 through 1.6.46 allows local attackers to cause denial of service through memory exhaustion. The vulnerability affects applications that proces...

CVE-2025-28164

MEDIUM CVSS 5.5 Jan 27, 2026

A buffer overflow vulnerability in libpng versions 1.6.43 through 1.6.46 allows local attackers to cause denial of service by exploiting the png_create_read_struct() function. This affects any applica...

CVE-2025-64505

MEDIUM CVSS 6.1 Nov 25, 2025

A heap buffer over-read vulnerability in libpng's png_do_quantize function allows attackers to craft malicious PNG files that trigger out-of-bounds memory access. This affects all applications using l...

CVE-2025-64506

MEDIUM CVSS 6.1 Nov 25, 2025

A heap buffer over-read vulnerability in libpng's png_write_image_8bit function allows reading up to 2 bytes beyond allocated memory boundaries when processing 8-bit images with convert_to_8bit enable...