CVE-2025-28162

Publication date

2026-01-27 00:00:00

Family

mitre

State

PUBLISHED

Description

Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via the pngimage with AddressSanitizer (ASan), the program leaks memory in various locations, eventually leading to high memory usage and causing the program to become unresponsive