Medium severity5.5NVD Advisory· Published Jul 28, 2022· Updated Jun 17, 2026
CVE-2022-36752
CVE-2022-36752
Description
png2webp v1.0.4 was discovered to contain an out-of-bounds write via the function w2p. This vulnerability is exploitable via a crafted png file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:png2webp_project:png2webp:1.0.4:*:*:*:*:*:*:*
- png2webp/png2webpdescription
- Range: = 1.0.4
Patches
Vulnerability mechanics
References
2- github.com/landfillbaby/png2webp/commit/8f21ad79b0cd98fc22d5b49734543101946abbffnvdPatchThird Party Advisory
- github.com/landfillbaby/png2webp/issues/3nvdExploitIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.