CVE-2018-18582: Lupng Project Lupng

High severity, CVSS 8.8. EPSS: 1.4% chance of exploitation in the next 30 days.

An issue has been found in LuPng through 2017-03-10. It is a heap-based buffer overflow in insertByte in miniz/lupng.c during a write operation for data obtained from a palette.

Affected products

Published 2018-10-22. Last modified 2026-06-17.