{"id":"CVE-2019-8383","details":"An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function adv_png_unfilter_8 in lib/png.c. It can be triggered by sending a crafted file to a binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact when a victim opens a specially crafted file.","modified":"2026-07-07T08:50:15.158515002Z","published":"2019-02-17T02:29:00.660Z","database_specific":{"unresolved_ranges":[{"extracted_events":[{"introduced":"9.0"},{"last_affected":"9.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux","cpes":["cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"]},{"cpes":["cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"30"},{"last_affected":"30"}],"source":"CPE_STRING","vendor_product":"fedoraproject:fedora"},{"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_for_power_little_endian","cpes":["cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"7.0"},{"last_affected":"7.0"}]},{"extracted_events":[{"introduced":"7.0"},{"last_affected":"7.0"}],"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_server","cpes":["cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"]},{"extracted_events":[{"introduced":"7.0"},{"last_affected":"7.0"}],"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_workstation","cpes":["cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"]}]},"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/J23C6QSTJMQ467KAI6QG54AE4MZRLPQV/"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2332"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html"},{"type":"EVIDENCE","url":"https://research.loginsoft.com/bugs/invalid-memory-access-in-adv_png_unfilter_8-advancecomp/"},{"type":"EVIDENCE","url":"https://sourceforge.net/p/advancemame/bugs/272/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/amadvance/advancecomp","events":[{"introduced":"0"},{"last_affected":"7deeafc02b29cc51d51079e66f4f43f986ff9cc5"}],"database_specific":{"source":"CPE_RANGE","cpe":"cpe:2.3:a:advancemame:advancecomp:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"2.1"}]}}],"versions":["v2.1","v2.0","v1.23","v1.22","v1.21","v1.20","v1.16","advancecomp-1_15","advancecomp-1_14","advancecomp-1_12","advancecomp-1_11","advancecomp-1_10","advancecomp-1_9","advancecomp-1_8","advancecomp-1_7","advancecomp-1_6","advancecomp-1_5","start"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-8383.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}