CVE-2002-0728: Buffer Overflow
Buffer overflow in the progressive reader for libpng 1.2.x before 1.2.4, and 1.0.x before 1.0.14, allows attackers to cause a denial of service (crash) via a PNG data stream that has more IDAT data than indicated by the IHDR chunk.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0728?
CVE-2002-0728 is considered a medium severity vulnerability due to its ability to cause denial of service through a buffer overflow.
How do I fix CVE-2002-0728?
To fix CVE-2002-0728, update libpng to version 1.2.4 or later for the 1.2.x series, or version 1.0.14 or later for the 1.0.x series.
Which versions of libpng are affected by CVE-2002-0728?
CVE-2002-0728 affects libpng versions 1.2.x before 1.2.4 and 1.0.x before 1.0.14.
What can attackers do with CVE-2002-0728?
Attackers can exploit CVE-2002-0728 to trigger a buffer overflow, leading to application crashes and denial of service.
Is CVE-2002-0728 still a concern for systems today?
CVE-2002-0728 is an older vulnerability, but depending on your system's configuration and software version, it may still pose a risk if outdated versions of libpng are in use.