CVE-2017-12652

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
10/07/2019
Last modified:
09/06/2025

Description

libpng before 1.6.32 does not properly check the length of chunks against the user limit.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:* 1.6.32 (excluding)
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vsphere:*:*