CVE-2026-3713 | pnggroup libpng up to 1.6.55 pnm2png pnm2png.c do_pnm2png width/height heap-based overflow (Issue 794)
A vulnerability was found in pnggroup libpng up to 1.6.55. It has been rated as critical. Affected by this vulnerability is the function do_pnm2png of the file contrib/pngminus/pnm2png.c of the component pnm2png. This manipulation of the argument width/height causes heap-based buffer overflow.
This vulnerability is tracked as CVE-2026-3713. The attack is restricted to local execution. Moreover, an exploit is present.
The project was informed of the problem early through an issue report but has not responded yet.