VDB

DEBIAN-CVE-2010-2249

DEBIAN-CVE-2010-2249 PUBLISHED CVSS 6.5 MEDIUM

Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Debian:11tuxonice-userui0, 0.7.2+clean, 0.7.2+clean
Debian:12tuxonice-userui0, 0.7.2+clean, 0.7.2+clean

Timeline

  • Jun 30, 2010 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›