CVE-2014-0333
EPSS 0.76%Published: 2/27/2014Modified: 4/28/2026
Description
The png_push_read_chunk function in pngpread.c in the progressive decoder in libpng 1.6.x through 1.6.9 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an IDAT chunk with a length of zero.
Affected packages (1)
- Debian/libpng1.6from 0, < 1.6.10-1