CVE-2025-66293 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
8
occurrences
First Seen
December 14, 2025
Last Seen
January 14, 2026

CVE-2025-66293 is a vulnerability tracked across 5 threat clusters and 8 intelligence report mentions on ThreatCluster. First observed December 14, 2025; most recent activity January 14, 2026.

Related Threat Clusters

  • Critical Vulnerabilities in libpng Affect Fedora 42 and 43

    Fedora 42 and 43 have identified critical vulnerabilities in the libpng package, which is essential for handling PNG image files. The vulnerabilities include a buffer overflow and a high-severity out-of-bounds read…

    2 articles · Updated January 10, 2026
  • openSUSE Addresses Critical Buffer Overflow Vulnerabilities in libpng16

    openSUSE has released an update for libpng16 to address multiple vulnerabilities, including heap buffer overflows and out-of-bounds reads. The vulnerabilities, identified as CVE-2025-65018, CVE-2025-66293,…

    2 articles · Updated December 19, 2025
  • Oracle8: libpng Vulnerabilities Addressed in ELSA-2026-0241

    Oracle has released ELSA-2026-0241 to address multiple vulnerabilities in libpng, affecting versions 1.6.34-9 and earlier. Key issues include a buffer overflow (CVE-2025-64720), a heap buffer overflow (CVE-2025-65018),…

    2 articles · Updated January 8, 2026
  • libpng Vulnerabilities Lead to Denial of Service Risk

    Vulnerabilities in the libpng simplified API were discovered, affecting the processing of palette PNG images with partial transparency and gamma correction. If exploited, an attacker could cause libpng to crash,…

    2 articles · Updated January 14, 2026
  • Fedora 43: Multiple Critical Buffer Overflow Vulnerabilities in mingw-libpng

    Fedora 43 has reported multiple critical buffer overflow vulnerabilities in the mingw-libpng library, including CVE-2025-66293, CVE-2025-64505, CVE-2025-64720, CVE-2025-65018, and CVE-2025-64506. These vulnerabilities…

    3 articles · Updated December 19, 2025

Recent Intelligence Reports

  • Ubuntu 25.10: Fix for libpng Critical Denial of Service Issue USN-7963 — Linuxsecurity · January 14, 2026
  • USN-7963-1: libpng vulnerabilities — Ubuntu · January 14, 2026
  • Fedora 42: Critical Buffer Overflow and Heap Vulnerabilities in libpng — Linuxsecurity · January 10, 2026
  • Oracle8: ELSA-2026-0241: libpng Important — Linuxsecurity · January 8, 2026
  • openSUSE: libpng16 Important Buffer Overflow Vulnerability RHSA-2025:4494 — Linuxsecurity · December 19, 2025
  • SUSE: libpng16 Important Security Fix Advisory 2025:4494 — Linuxsecurity · December 19, 2025
  • Fedora 43: mingw-libpng Important Buffer Overflow Fix CVE-2025 — Linuxsecurity · December 19, 2025
  • Fedora 43: libpng High CVE-2025-66293 Out-of — Linuxsecurity · December 14, 2025

CVSS v3.1 Breakdown