An issue has been found in third-party PNM decoding associated with libpng 1.6.35. It is a stack-based buffer overflow in the function get_token in pnm2png.c in pnm2png.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-14550.json"