Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Imageio | — | Apply OS X security update 2012-004Upgrade macOS to the latest version | Sep 27, 2012 | Feb 16, 2012 |
| Apple Osx Note | — | Apply OS X security update 2012-004Upgrade macOS to the latest version | Aug 28, 2015 | Feb 16, 2012 |
| Centos_linux | — | Upgrade libpng10Upgrade seamonkey-develUpgrade xulrunner-develUpgrade seamonkey-js-debuggerUpgrade xulrunnerUpgrade seamonkey-dom-inspectorUpgrade seamonkey-mailUpgrade libpng-develUpgrade libpngUpgrade libpng10-develUpgrade thunderbirdUpgrade seamonkey-chatUpgrade libpng-staticUpgrade seamonkeyUpgrade firefox | Dec 1, 2016 | Feb 16, 2012 |
| Freebsd | — | Upgrade linux-thunderbirdUpgrade linux-firefoxUpgrade linux-seamonkeyUpgrade firefoxUpgrade seamonkeyUpgrade thunderbird | Dec 10, 2025 | Feb 17, 2012 |
| Gentoo Linux | — | Upgrade www-client/seamonkey-bin.Upgrade www-client/icecat.Upgrade net-libs/xulrunner.Upgrade www-client/firefox.Upgrade mail-client/thunderbird.Upgrade www-client/mozilla-firefox.Upgrade dev-libs/nss.Upgrade mail-client/thunderbird-bin.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/mozilla-firefox-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade www-client/firefox-bin.Upgrade media-libs/libpng.Upgrade www-client/seamonkey.Upgrade net-libs/xulrunner-bin. | Oct 30, 2017 | Feb 16, 2012 |
| Google Chrome | — | Upgrade to the latest version of Google Chrome | Mar 21, 2012 | Feb 16, 2012 |
| Mfsa2012 11 | — | Upgrade to Mozilla Firefox ESR version 10.0.2Upgrade to Mozilla Firefox version 3.6.27Upgrade to the latest version of Mozilla FirefoxUpgrade to Mozilla Firefox version 10.0.2 | Jun 14, 2012 | Feb 16, 2012 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 2.7.2 | Feb 17, 2012 | Feb 16, 2012 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 10.0.2Upgrade to Mozilla Thunderbird version 3.1.19Upgrade to the latest version of Mozilla ThunderbirdUpgrade to Mozilla Thunderbird ESR version 10.0.2 | Feb 22, 2012 | Feb 16, 2012 |
| Oracle Solaris | — | Upgrade entire to version 0.5.11-0.175.1.0.0.24.2 on Solaris 11.1 | May 29, 2017 | Feb 16, 2012 |
| Oracle_linux | — | Upgrade thunderbirdUpgrade libpng-develUpgrade libpng-staticUpgrade libpng | Oct 16, 2024 | Feb 16, 2012 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 16, 2012 |
| Suse | — | Upgrade mozilla-xulrunner192-x86Upgrade mozilla-xulrunner192-translations-32bitUpgrade libpng12-compat-develUpgrade MozillaThunderbird-translations-otherUpgrade libpng12-develUpgrade MozillaFirefox-translationsUpgrade libpng12-0Upgrade mozilla-xulrunner192-gnomeUpgrade mozilla-xulrunner192Upgrade mozilla-xulrunner192-develUpgrade libpng12-0-x86Upgrade MozillaFirefox-develUpgrade MozillaFirefoxUpgrade MozillaThunderbirdUpgrade libpng12-0-32bitUpgrade MozillaThunderbird-translations-commonUpgrade mozilla-xulrunner192-32bitUpgrade chromiumUpgrade libpng-develUpgrade MozillaFirefox-translations-otherUpgrade MozillaThunderbird-develUpgrade libpng15-15Upgrade mozilla-xulrunner192-translationsUpgrade mozilla-xulrunner192-gnome-32bitUpgrade MozillaFirefox-translations-commonUpgrade libpng-devel-32bit | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libpng12-0Upgrade firefoxUpgrade thunderbirdUpgrade xulrunner-1.9.2 | Nov 8, 2024 | Feb 16, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub