CVE-2022-3857

NULL Pointer Dereference in conan/libpng

Identifiers

CVE-2022-3857

Package Slug

conan/libpng

Vulnerability

NULL Pointer Dereference

Description

A flaw was found in libpng 1.6.38. A crafted PNG image can lead to a segmentation fault and denial of service in png_setup_paeth_row() function.

Affected Versions

Version 1.6.38

Solution

Upgrade to version 1.6.39 or above.

Last Modified

2023-03-14

source