Record summary

CVE-2017-6193 has a selected CVSS score of 5.5 (medium); EIP currently links 2 catalogued exploits.

Description

Buffer overflow in APNGDis 2.8 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted image containing a malformed image size descriptor in the IHDR chunk.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBAPNGDis 2.8 - 'chunk size descriptor' Heap Buffer OverflowExploitDB exploitby Alwin PeppelsNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details
ExploitDBAPNGDis 2.8 - 'image width / height chunk' Heap Buffer OverflowExploitDB exploitby Alwin PeppelsNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

5