The png_format_buffer function in pngerror.c in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x before 1.5.4 allows remote attackers to cause a denial of service (application crash) via a crafted PNG image that triggers an out-of-bounds read during the copying of error-message data. NOTE: this vulnerability exists because of a CVE-2004-0421 regression. NOTE: this is called an off-by-one error by some sources.
References
Link Providers
https://www.spirityenterprise.com/pentest spirity
https://www.spirityenterprise.com/managed-detection-response spirity
http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng%3Ba=commit%3Bh=65e6d5a34f49acdb362a0625a706c6b914e670af cve-icon cve-icon
http://lists.fedoraproject.org/pipermail/package-announce/2011-July/062720.html cve-icon cve-icon
http://lists.fedoraproject.org/pipermail/package-announce/2011-July/063118.html cve-icon cve-icon
http://secunia.com/advisories/45046 cve-icon cve-icon
http://secunia.com/advisories/45289 cve-icon cve-icon
http://secunia.com/advisories/45405 cve-icon cve-icon
http://secunia.com/advisories/45415 cve-icon cve-icon
http://secunia.com/advisories/45460 cve-icon cve-icon
http://secunia.com/advisories/45486 cve-icon cve-icon
http://secunia.com/advisories/45492 cve-icon cve-icon
http://secunia.com/advisories/49660 cve-icon cve-icon
http://security.gentoo.org/glsa/glsa-201206-15.xml cve-icon cve-icon
http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.617466 cve-icon cve-icon
http://sourceforge.net/mailarchive/forum.php?thread_name=BANLkTikrnU6FJNQYFvwmt78hwpgKPVRd1Q%40mail.gmail.com&forum_name=png-mng-implement cve-icon cve-icon
http://www.debian.org/security/2011/dsa-2287 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDVSA-2011:151 cve-icon cve-icon
http://www.openwall.com/lists/oss-security/2011/06/27/13 cve-icon cve-icon
http://www.openwall.com/lists/oss-security/2011/06/28/16 cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2011-1105.html cve-icon cve-icon
http://www.securityfocus.com/bid/48474 cve-icon cve-icon
http://www.ubuntu.com/usn/USN-1175-1 cve-icon cve-icon
https://bugzilla.redhat.com/show_bug.cgi?id=717084 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/68517 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2011-2501 cve-icon
https://www.cve.org/CVERecord?id=CVE-2011-2501 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T23:00:34.249Z

Reserved: 2011-06-15T00:00:00.000Z

Link: CVE-2011-2501

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2011-07-17T20:55:01.483

Modified: 2025-04-11T00:51:21.963

Link: CVE-2011-2501

cve-icon Redhat

Severity : Moderate

Publid Date: 2011-06-07T00:00:00Z

Links: CVE-2011-2501 - Bugzilla