MSRC compact vulnerability detail

CVE-2026-34757 · LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure

No description was published by MSRC.

Severity
n/a
Impact
n/a
CVSS
5.1 base · 5.1 temporal
Release
2026-04-12
Signals
Mariner Unknown impact Exploited: n/a Publicly disclosed: n/a Exploitability: n/a
CWE
Patch Diff
Loading module diff metadata...
Resolved binary override
Use this when the MSRC module name cannot be mapped automatically or the resolved binary looks wrong.
Old version New version
Description
No description was published by MSRC.
FAQ / Articles
No FAQ or article content was published.