CVE-2006-3334: Buffer Overflow
Buffer overflow in the pngdecompresschunk function in pngrutil.c in libpng before 1.2.12 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors related to "chunk error processing," possibly involving the "chunkname".
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-3334?
CVE-2006-3334 has been classified as a high severity vulnerability due to the potential for denial of service and arbitrary code execution.
How do I fix CVE-2006-3334?
To fix CVE-2006-3334, upgrade to libpng version 1.2.12 or later.
What software is affected by CVE-2006-3334?
CVE-2006-3334 affects libpng versions prior to 1.2.12, including versions 1.2.0 to 1.2.11.
Can CVE-2006-3334 be exploited remotely?
Yes, CVE-2006-3334 can potentially be exploited by remote attackers through specially crafted PNG files.
What are the potential impacts of CVE-2006-3334?
The impacts of CVE-2006-3334 may include service interruptions and the execution of arbitrary code on vulnerable systems.