Vulnerabilities > CVE-2020-35511 - Buffer Over-read vulnerability in multiple products

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
libpng
debian
CWE-126

Summary

A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.

Vulnerable Configurations

Part Description Count
Application
Libpng
1
OS
Debian
2

Common Weakness Enumeration (CWE)