PT-2026-31620 · Libpng+3 · Libpng+3

·

CVE-2026-34757

·

Published

2026-04-09

·

Updated

2026-08-17

CVSS v3.1

5.1

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions LIBPNG versions 1.0.9 through 1.6.56
Description LIBPNG is a library used by applications to read, create, and manipulate PNG image files. A flaw exists where passing a pointer obtained from png get PLTE, png get tRNS, or png get hIST back into the corresponding setter function on the same png struct/png info pair can lead to reading from freed memory. This occurs because the setter frees the internal buffer before copying data from the provided pointer, which is now invalid. This can result in silently corrupted chunk metadata or leakage of unrelated heap contents into the chunk structure.
Recommendations Update to version 1.6.57 or later.

Exploit

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-82643
AZL-85478
AZL-85481
AZL-85484
AZL-85487
AZL-85490
AZL-85493
BDU:2026-06672
CLEANSTART-2026-CF62516
CLEANSTART-2026-EP51501
CVE-2026-34757
ECHO-7EDB-B098-20D5
GHSA-6FR7-G8H7-V645
OESA-2026-2149
OPENSUSE-SU-2026:10564-1
OPENSUSE-SU-2026:10640-1
OPENSUSE-SU-2026:20593-1
RHSA-2026:13719
SUSE-SU-2026:1500-1
SUSE-SU-2026:1601-1
SUSE-SU-2026:1602-1
SUSE-SU-2026:1702-1
SUSE-SU-2026:1716-1
SUSE-SU-2026:2057-1
SUSE-SU-2026:21239-1
SUSE-SU-2026:21251-1
SUSE-SU-2026:21262-1
SUSE-SU-2026:21364-1
SUSE-SU-2026:23063-1
USN-8251-1
USN-8639-1

Affected Products

Libpng
Linuxmint
Red Os
Ubuntu