CVE-2024-41437
https://notcve.org/view.php?id=CVE-2024-41437
30 Jul 2024 — A heap buffer overflow in the function cp_unfilter() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file. • https://github.com/Helson-S/FuzzyTesting/tree/master/hicolor/heapof-r1-cp_unfilter-cute_png-1019c11 •
CVE-2024-41438
https://notcve.org/view.php?id=CVE-2024-41438
30 Jul 2024 — A heap buffer overflow in the function cp_stored() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file. • https://github.com/Helson-S/FuzzyTesting/blob/master/hicolor/heapof-r65280-cp_stored-cute_png-543c2 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-41439
https://notcve.org/view.php?id=CVE-2024-41439
30 Jul 2024 — A heap buffer overflow in the function cp_block() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file. • https://github.com/Helson-S/FuzzyTesting/blob/master/hicolor/heapof-w98-cp_block-5c0-cute_png-642c5 • CWE-787: Out-of-bounds Write •
CVE-2024-41440
https://notcve.org/view.php?id=CVE-2024-41440
30 Jul 2024 — A heap buffer overflow in the function png_quantize() of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file. • https://github.com/Helson-S/FuzzyTesting/blob/master/hicolor/heapof-w1-png_quantize-cli-220c32 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-41443
https://notcve.org/view.php?id=CVE-2024-41443
30 Jul 2024 — A stack overflow in the function cp_dynamic() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file. • https://github.com/Helson-S/FuzzyTesting/blob/master/hicolor/stkof-w133-cp_dynamic-cute_png-603 •