#VU70431 Division by zero in pngcheck
Published: December 19, 2022
pngcheck
libpng
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a division by zero issue when zlib-decoding interlaced PNGs with extra data beyond what is required for the declared image dimensions. A remote attacker can pass a specially crafted PNG file to the application and perform a denial of service (DoS) attack.