Unrated severityNVD Advisory· Published Jul 10, 2019· Updated Jun 9, 2025
CVE-2017-12652
CVE-2017-12652
Description
libpng before 1.6.32 does not properly check the length of chunks against the user limit.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
22- libpng/libpngdescription
- osv-coords20 versionspkg:rpm/opensuse/libpng16&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/libpng12&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/libpng15&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/libpng15&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/libpng16&distro=SUSE%20Enterprise%20Storage%205pkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCLpkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSSpkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-BCLpkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-LTSSpkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2pkg:rpm/suse/libpng16&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/libpng16&distro=SUSE%20OpenStack%20Cloud%207pkg:rpm/suse/libpng16&distro=SUSE%20OpenStack%20Cloud%208
< 1.6.37-3.3+ 19 more
- (no CPE)range: < 1.6.37-3.3
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.2.50-20.3.2
- (no CPE)range: < 1.5.22-10.4.1
- (no CPE)range: < 1.5.22-10.4.1
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
- (no CPE)range: < 1.6.8-15.5.2
Patches
Vulnerability mechanics
References
6- www.securityfocus.com/bid/109269mitrevdb-entry
- github.com/glennrp/libpng/blob/df7e9dae0c4aac63d55361e35709c864fa1b8363/ANNOUNCEmitre
- github.com/pnggroup/libpng/commit/347538efbdc21b8df684ebd92d37400b3ce85d55mitre
- security.netapp.com/advisory/ntap-20220506-0003/mitre
- support.f5.com/csp/article/K88124225mitre
- support.f5.com/csp/article/K88124225mitre
News mentions
0No linked articles in our index yet.