Skip to content

CVE-2026-33416

CVE

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
March 28, 2026
Last Seen
August 19, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

On May 7, 2026, Ubuntu published USN-8251-1, addressing several critical vulnerabilities in libpng, affecting Ubuntu 25.10, 24.04 LTS, and 22.04 LTS. The vulnerabilities include improper memory handling when processing specially crafted PNG files, which could lead to denial of service or arbitrary c...

Recent vulnerabilities in the libpng library have been discovered, affecting various versions of Ubuntu, including 14.04, 16.04, 18.04, and 20.04 LTS. The issues, identified by Patrick Keshishian, involve improper handling of text chunks and malformed images, potentially leading to denial of service...

Recent updates to Mageia 9 have addressed critical vulnerabilities in GraphicsMagick and libpng. GraphicsMagick was found to have a stack write buffer overflow (CVE-2026-28690) and a heap overflow (CVE-2026-30883), both published on 2026-03-09. These vulnerabilities could be exploited to execute arb...

Oracle has issued advisories for two vulnerabilities in Oracle Linux 8 affecting libpng12 and libpng15. Both advisories address CVE-2026-33416, a use-after-free vulnerability due to pointer aliasing in the png_set_tRNS and png_set_PLTE functions. The affected versions include libpng12-1.2.57-7 and l...

Public Exploits

Checking GitHub for proof-of-concept code…