CVE-2002-1363: Buffer Overflow
Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a buffer overflow attack on the row buffers.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1363?
The severity of CVE-2002-1363 is considered high due to the potential for a denial of service and arbitrary code execution.
How do I fix CVE-2002-1363?
To fix CVE-2002-1363, update to a later version of libpng that addresses the buffer overflow vulnerability.
Which versions of libpng are affected by CVE-2002-1363?
CVE-2002-1363 affects libpng versions 1.0.5 through 1.2.4.
What type of vulnerability is CVE-2002-1363?
CVE-2002-1363 is a buffer overflow vulnerability that can lead to denial of service and potential arbitrary code execution.
Can CVE-2002-1363 be exploited remotely?
Yes, CVE-2002-1363 can be exploited remotely by attackers through specially crafted PNG images.