First published: Wed Jul 10 2019(Updated: )
An issue has been found in third-party PNM decoding associated with libpng 1.6.35. It is a stack-based buffer overflow in the function get_token in pnm2png.c in pnm2png.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libpng Libpng | =1.6.35 | |
Oracle Hyperion Infrastructure Technology | =11.1.2.6.0 | |
Oracle Mysql Workbench | <=8.0.23 | |
Netapp Active Iq Unified Manager Vmware Vsphere | ||
NetApp OnCommand API Services |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-14550 is a vulnerability found in third-party PNM decoding associated with libpng 1.6.35.
CVE-2018-14550 has a severity value of 8.8, which is considered high.
The software affected by CVE-2018-14550 includes Libpng, Oracle Hyperion Infrastructure Technology, Oracle Mysql Workbench, Apple iPadOS, and NetApp OnCommand API Services.
To fix CVE-2018-14550, you should update to a patched version of the affected software.
You can find more information about CVE-2018-14550 on the following references: [link 1], [link 2], [link 3].