https://seclists.org/oss-sec/2025/q4/234: libpng 1.6.52: Out-of-bounds vulnerability fixed: CVE-2025-66293
Published Dec 3, 2025
·Updated
Affected Software
1 affected component
libpng LIBPNG>=1.6.0<1.6.51
Frequently Asked Questions
1
What is the severity of CVE-2025-66293?
CVE-2025-66293 has been classified as a high-severity out-of-bounds read vulnerability.
2
How do I fix CVE-2025-66293?
To fix CVE-2025-66293, upgrade to libpng version 1.6.52 or later.
3
Which versions of libpng are affected by CVE-2025-66293?
CVE-2025-66293 affects libpng versions 1.6.0 through 1.6.51.
4
What type of vulnerability is CVE-2025-66293?
CVE-2025-66293 is an out-of-bounds read vulnerability in the simplified API of libpng.
5
When was CVE-2025-66293 published?
CVE-2025-66293 was published on December 3, 2025.