cve 2026 22801

  1. CVE-2026-22801: Libpng stride bug causes heap read and DoS; fixed in 1.6.54

    A recently disclosed flaw in the libpng library — tracked as CVE-2026-22801 — creates an integer truncation in libpng's simplified write APIs that can lead to a heap buffer over‑read and consequent denial‑of‑service or information disclosure when applications call png_write_image_16bit() or...