AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-3982

HIGH · CVSS 8.8 EPSS 3.97%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-04-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-3982
Severity
HIGH
CVSS
8.8
EPSS
3.97%

Original NVD Description

Off-by-one error in the bmp_rle4_fread function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image file, which triggers a heap-based buffer overflow.