Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-4214


A heap overflow flaw was found in libpngs' pngimage.c program. This flaw allows an attacker with local network access to pass a specially crafted PNG file to the pngimage utility, causing an application to crash, leading to a denial of service.


Published

2022-08-24T16:15:10.037

Last Modified

2024-11-21T06:37:10.063

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-120
  • Type: Secondary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application libpng libpng 1.6.0 Yes
Operating System debian debian_linux 10.0 Yes
Operating System debian debian_linux 11.0 Yes
Application netapp ontap_select_deploy_administration_utility - Yes

References