Cosmin Truta
13 exploits
Active since Jul 2018
LIBPNG: Chunk smuggling in push-mode APNG parser via unconsumed chunk body
CVSS 5.4
LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`
CVSS 7.5
libpng 1.0.9-1.6.56 Chunk Setters - Use-After-Free
CVSS 5.1
libpng 1.0.9-1.6.56 Chunk Setters - Use-After-Free
CVSS 5.1
LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`
CVSS 7.5
LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64
CVSS 7.6
libpng 1.6.34 - Denial of Service via Crafted PNG File
CVSS 6.5
zlib < 1.3.1 - Heap-Based Buffer Overflow via MiniZip Long Filename
CVSS 9.8
libpng < 1.6.51 - Out-of-bounds Read in png_do_quantize
CVSS 6.1
libpng 1.6.0-1.6.50 - Out-of-bounds Read in png_write_image_8bit
CVSS 6.1
libpng < 1.6.52 - Out-of-bounds Read in Simplified API
CVSS 7.1
libpng 1.6.51-1.6.53 - Heap Buffer Over-read in png_image_finish_read
CVSS 6.1
libpng < 1.6.55 - Buffer Over-read in png_set_quantize()
CVSS 8.1