Unrated severityNVD Advisory· Published Oct 1, 2012· Updated Jun 16, 2026
CVE-2012-4432
CVE-2012-4432
Description
Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecified vectors related to "palette reduction."
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:optipng:optipng:0.7.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:optipng:optipng:0.7.0:*:*:*:*:*:*:*
- cpe:2.3:a:optipng:optipng:0.7.1:*:*:*:*:*:*:*
- cpe:2.3:a:optipng:optipng:0.7.2:*:*:*:*:*:*:*
- cpe:2.3:a:optipng:optipng:hg:*:*:*:*:*:*:*
- (no CPE)range: <0.7.3
Patches
Vulnerability mechanics
References
8- optipng.sourceforge.netnvdPatchVendor Advisory
- optipng.hg.sourceforge.net/hgweb/optipng/optipng/rev/f1d5d44670a2nvdExploit
- www.openwall.com/lists/oss-security/2012/09/17/5nvdExploitPatch
- www.openwall.com/lists/oss-security/2012/09/18/2nvdExploitPatch
- secunia.com/advisories/50654nvdVendor Advisory
- sourceforge.net/news/nvd
- www.securityfocus.com/bid/55566nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/78743nvd
News mentions
0No linked articles in our index yet.