CVE-2012-4432

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
01/10/2012
Last modified:
11/04/2025

Description

Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecified vectors related to "palette reduction."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:optipng:optipng:0.7.0:*:*:*:*:*:*:*
cpe:2.3:a:optipng:optipng:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:optipng:optipng:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:optipng:optipng:hg:*:*:*:*:*:*:*