Vulnerability Description
In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Libpng | Libpng | 1.6.34 |
| Canonical | Ubuntu Linux | 14.04 |
| Oracle | Jdk | 1.6.0 |
| Oracle | Jre | 1.6.0 |
| Redhat | Enterprise Linux Desktop | 6.0 |
| Redhat | Enterprise Linux Server | 6.0 |
| Redhat | Enterprise Linux Workstation | 6.0 |
Related Weaknesses (CWE)
References
- http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/105599Broken LinkThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1041889Broken LinkThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHSA-2018:3000Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3001Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3002Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3003Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3007Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3008Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3533Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3534Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3671Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3672Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3779Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3852Third Party Advisory
FAQ
What is CVE-2018-13785?
CVE-2018-13785 is a vulnerability with a CVSS score of 6.5 (MEDIUM). In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file...
How severe is CVE-2018-13785?
CVE-2018-13785 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-13785?
Check the references section above for vendor advisories and patch information. Affected products include: Libpng Libpng, Canonical Ubuntu Linux, Oracle Jdk, Oracle Jre, Redhat Enterprise Linux Desktop.