VDB

GCVE-110-MAGEIA-2026-205

GCVE-110-MAGEIA-2026-205
Advisory Published
Vulnetix · Advisory published June 13, 2026
LIBPNG has a use-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure. (CVE-2026-34757) Chunk smuggling in push-mode APNG parser via unconsumed chunk body. (CVE-2026-40930)

Affected Products

VendorProductVersionsPlatforms
Mageialibpng0 (affected), 1.6.38-1.6.mga9 (unaffected)

Browse GCVE Records

74,352 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›