CVE-2010-1205

Description

Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
15.244

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2010-1205 are affected in Mozilla Firefox 3.6.6Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.2.4Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 12.0.3Windows
Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.5Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 10.1.2Windows
Multiple Vulnerabilities are affected in Apple iTunes 10.1.2Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 3.5.10Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 3.6.6Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 3.5.10Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 3.6.6Windows
Multiple Vulnerabilities are affected in Apple iTunes For Mac 10.1.2Mac
Vulnerabilities CVE-2010-1205,CVE-2010-2249 are affected in Apple Safari for MAC 5.0.3Mac
Multiple Vulnerabilities are affected in Mozilla Firefox for Mac 3.5.10Mac
Multiple Vulnerabilities are affected in Mozilla Firefox for Mac 3.6.6Mac
Multiple Vulnerabilities are affected in Mozilla Thunderbird for Mac 3.0.5Mac
Vulnerabilities CVE-2010-1205 are affected in Mozilla Thunderbird for Mac 3.1-rc2Mac
Multiple Vulnerabilities are affected in SeaMonkey For Mac 2.0.5Mac
Multiple Vulnerabilities are affected in Apple Safari 5.0.3Mac
Multiple Vulnerabilities are affected in Apple Safari for MAC 5.0.3Mac
Vulnerabilities CVE-2010-1205,CVE-2010-2249,CVE-2011-1797 are affected in Apple Safari for MAC 5.0.3Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-343015Mozilla Firefox (132.0.2)
PATCH-611604Apple Safari for MAC (MacOS Sonoma) (18.6)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611807Mozilla Thunderbird For Mac (142.0)
PATCH-611807Mozilla Thunderbird For Mac (142.0)
PATCH-611088SeaMonkey For Mac (2.53.21)
PATCH-611604Apple Safari for MAC (MacOS Sonoma) (18.6)
PATCH-611604Apple Safari for MAC (MacOS Sonoma) (18.6)
PATCH-612606Apple Safari for MAC (MacOS Sequoia) (26.1)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234