Search

Find a vulnerability

Search criteria

    Related vulnerabilities

    BELL-CVE-2026-46675 (CVE-2026-46675)

    Vulnerability from osv_bellsoft – Published: 2026-09-30 17:58 – Updated: 2026-10-02 06:01 – Source website
    VLAI

    {
      "affected": [
        {
          "package": {
            "ecosystem": "Alpaquita:23",
            "name": "libpng",
            "purl": "pkg:apk/alpaquita/libpng?arch=source\u0026distro=23"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.38-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        },
        {
          "package": {
            "ecosystem": "Alpaquita:25",
            "name": "libpng",
            "purl": "pkg:apk/alpaquita/libpng?arch=source\u0026distro=25"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.47-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        },
        {
          "package": {
            "ecosystem": "Alpaquita:stream",
            "name": "libpng",
            "purl": "pkg:apk/alpaquita/libpng?arch=source\u0026distro=stream"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.38-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        },
        {
          "package": {
            "ecosystem": "BellSoft Hardened Containers:23",
            "name": "libpng",
            "purl": "pkg:apk/bellsoft-hardened-containers/libpng?arch=source\u0026distro=23"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.38-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        },
        {
          "package": {
            "ecosystem": "BellSoft Hardened Containers:25",
            "name": "libpng",
            "purl": "pkg:apk/bellsoft-hardened-containers/libpng?arch=source\u0026distro=25"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.47-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        },
        {
          "package": {
            "ecosystem": "BellSoft Hardened Containers:stream",
            "name": "libpng",
            "purl": "pkg:apk/bellsoft-hardened-containers/libpng?arch=source\u0026distro=stream"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "1.6.38-r0"
                },
                {
                  "fixed": "1.6.59-r0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ]
        }
      ],
      "id": "BELL-CVE-2026-46675",
      "modified": "2026-10-02T06:01:05.284278Z",
      "published": "2026-09-30T17:58:32.696148Z",
      "references": [
        {
          "type": "ADVISORY",
          "url": "https://docs.bell-sw.com/security/cves/CVE-2026-46675"
        }
      ],
      "schema_version": "1.7.4",
      "upstream": [
        "CVE-2026-46675"
      ]
    }

    UBUNTU-CVE-2026-46675 (CVE-2026-46675)

    Vulnerability from osv_ubuntu – Published: 2026-09-29 00:00 – Updated: 2026-09-29 00:00 – Source website
    VLAI
    Details

    [Use-after-free of zlib input in png_read_end after incomplete zTXt, iTXt or iCCP decompression]

    Severity
    N/A (UNKNOWN)

    {
      "affected": [
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng12-0",
                "binary_version": "1.2.50-1ubuntu2.14.04.3+esm2"
              },
              {
                "binary_name": "libpng3",
                "binary_version": "1.2.50-1ubuntu2.14.04.3+esm2"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:Pro:14.04:LTS",
            "name": "libpng",
            "purl": "pkg:deb/ubuntu/libpng@1.2.50-1ubuntu2.14.04.3+esm2?arch=source\u0026distro=esm-infra-legacy/trusty"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.2.49-4ubuntu1",
            "1.2.49-5ubuntu1",
            "1.2.50-1ubuntu1",
            "1.2.50-1ubuntu2",
            "1.2.50-1ubuntu2.14.04.1",
            "1.2.50-1ubuntu2.14.04.2",
            "1.2.50-1ubuntu2.14.04.3",
            "1.2.50-1ubuntu2.14.04.3+esm1",
            "1.2.50-1ubuntu2.14.04.3+esm2"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng12-0",
                "binary_version": "1.2.54-1ubuntu1.1+esm3"
              },
              {
                "binary_name": "libpng3",
                "binary_version": "1.2.54-1ubuntu1.1+esm3"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:Pro:16.04:LTS",
            "name": "libpng",
            "purl": "pkg:deb/ubuntu/libpng@1.2.54-1ubuntu1.1+esm3?arch=source\u0026distro=esm-infra-legacy/xenial"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.2.51-0ubuntu3",
            "1.2.54-1",
            "1.2.54-1ubuntu1",
            "1.2.54-1ubuntu1.1",
            "1.2.54-1ubuntu1.1+esm1",
            "1.2.54-1ubuntu1.1+esm2",
            "1.2.54-1ubuntu1.1+esm3"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng16-16",
                "binary_version": "1.6.20-2ubuntu0.1~esm4"
              },
              {
                "binary_name": "libpng16-devtools",
                "binary_version": "1.6.20-2ubuntu0.1~esm4"
              },
              {
                "binary_name": "libpng16-tools",
                "binary_version": "1.6.20-2ubuntu0.1~esm4"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:Pro:16.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.20-2ubuntu0.1~esm4?arch=source\u0026distro=esm-apps-legacy/xenial"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.20-2",
            "1.6.20-2ubuntu0.1~esm1",
            "1.6.20-2ubuntu0.1~esm2",
            "1.6.20-2ubuntu0.1~esm3",
            "1.6.20-2ubuntu0.1~esm4"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng-tools",
                "binary_version": "1.6.34-1ubuntu0.18.04.2+esm3"
              },
              {
                "binary_name": "libpng16-16",
                "binary_version": "1.6.34-1ubuntu0.18.04.2+esm3"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:Pro:18.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.34-1ubuntu0.18.04.2+esm3?arch=source\u0026distro=esm-infra/bionic"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.34-1",
            "1.6.34-1ubuntu0.18.04.1",
            "1.6.34-1ubuntu0.18.04.2",
            "1.6.34-1ubuntu0.18.04.2+esm1",
            "1.6.34-1ubuntu0.18.04.2+esm2",
            "1.6.34-1ubuntu0.18.04.2+esm3"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng-tools",
                "binary_version": "1.6.37-2ubuntu0.1~esm3"
              },
              {
                "binary_name": "libpng16-16",
                "binary_version": "1.6.37-2ubuntu0.1~esm3"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:Pro:20.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.37-2ubuntu0.1~esm3?arch=source\u0026distro=esm-infra/focal"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.37-1",
            "1.6.37-2",
            "1.6.37-2ubuntu0.1~esm1",
            "1.6.37-2ubuntu0.1~esm2",
            "1.6.37-2ubuntu0.1~esm3"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng-tools",
                "binary_version": "1.6.37-3ubuntu0.6"
              },
              {
                "binary_name": "libpng16-16",
                "binary_version": "1.6.37-3ubuntu0.6"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:22.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.37-3ubuntu0.6?arch=source\u0026distro=jammy"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.37-3build4",
            "1.6.37-3build5",
            "1.6.37-3ubuntu0.1",
            "1.6.37-3ubuntu0.3",
            "1.6.37-3ubuntu0.4",
            "1.6.37-3ubuntu0.5",
            "1.6.37-3ubuntu0.6"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng-tools",
                "binary_version": "1.6.43-5ubuntu0.6"
              },
              {
                "binary_name": "libpng16-16t64",
                "binary_version": "1.6.43-5ubuntu0.6"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:24.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.43-5ubuntu0.6?arch=source\u0026distro=noble"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.40-1",
            "1.6.40-2",
            "1.6.40-3",
            "1.6.42-1",
            "1.6.43-1",
            "1.6.43-3",
            "1.6.43-5build1",
            "1.6.43-5ubuntu0.1",
            "1.6.43-5ubuntu0.3",
            "1.6.43-5ubuntu0.4",
            "1.6.43-5ubuntu0.5",
            "1.6.43-5ubuntu0.6"
          ]
        },
        {
          "ecosystem_specific": {
            "binaries": [
              {
                "binary_name": "libpng-tools",
                "binary_version": "1.6.57-1"
              },
              {
                "binary_name": "libpng16-16t64",
                "binary_version": "1.6.57-1"
              }
            ]
          },
          "package": {
            "ecosystem": "Ubuntu:26.04:LTS",
            "name": "libpng1.6",
            "purl": "pkg:deb/ubuntu/libpng1.6@1.6.57-1?arch=source\u0026distro=resolute"
          },
          "ranges": [
            {
              "events": [
                {
                  "introduced": "0"
                }
              ],
              "type": "ECOSYSTEM"
            }
          ],
          "versions": [
            "1.6.50-1",
            "1.6.51-1",
            "1.6.53-1",
            "1.6.54-1",
            "1.6.55-1",
            "1.6.56-1",
            "1.6.57-1"
          ]
        }
      ],
      "aliases": [],
      "details": "[Use-after-free of zlib input in `png_read_end` after incomplete zTXt, iTXt or iCCP decompression]",
      "id": "UBUNTU-CVE-2026-46675",
      "modified": "2026-09-29T00:00:00Z",
      "published": "2026-09-29T00:00:00Z",
      "references": [
        {
          "type": "REPORT",
          "url": "https://ubuntu.com/security/CVE-2026-46675"
        },
        {
          "type": "REPORT",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-46675"
        },
        {
          "type": "REPORT",
          "url": "https://github.com/pnggroup/libpng/security/advisories/GHSA-qvg3-h654-xq3j"
        },
        {
          "type": "REPORT",
          "url": "https://github.com/pnggroup/libpng/issues/855"
        }
      ],
      "related": [],
      "schema_version": "1.7.0",
      "severity": [
        {
          "score": "medium",
          "type": "Ubuntu"
        }
      ],
      "upstream": [
        "CVE-2026-46675"
      ]
    }

    WID-SEC-W-2026-3619

    Vulnerability from csaf_certbund - Published: 2026-09-28 22:00 - Updated: 2026-09-28 22:00
    Summary
    libpng: Schwachstelle ermöglicht Denial of Service
    Severity
    Mittel
    Scope
    1 vulnerability in this advisory, including CVE-2026-46675.
    CVE-2026-46675
    Known affected: 1 product
    Open the full advisory