VYPR
Medium severity6.5NVD Advisory· Published May 6, 2014· Updated Jun 17, 2026

CVE-2013-7353

CVE-2013-7353

Description

Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng before 1.5.14beta08 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a crafted image, which triggers a heap-based buffer overflow.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

25
  • Libpng/Libpng25 versions
    cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:*+ 24 more
    • cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:*range: <=1.5.13
    • cpe:2.3:a:libpng:libpng:1.5.0:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.10:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.11:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.11:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.12:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.13:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.1:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.2:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.3:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.4:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.4:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.5:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.5:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.6:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.6:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.7:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.7:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.8:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.8:beta:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.9:*:*:*:*:*:*:*
    • cpe:2.3:a:libpng:libpng:1.5.9:beta:*:*:*:*:*:*
    • (no CPE)range: <1.5.14beta08

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.