pngimagefree in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because pngimagefreefunction is called under pngsafe_execute.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-7317.json"
[
{
"id": "CVE-2019-7317-dfd9b952",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "207208958033309643961658472027306269514",
"length": 1650.0
},
"target": {
"file": "libtiff/tif_lzma.c",
"function": "LZMADecode"
},
"source": "https://gitlab.com/libtiff/libtiff@f7b79dc7dc86ccbaabe9882e2b9ffa5ee8dac917"
},
{
"id": "CVE-2019-7317-ff63d6e8",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"83735383308701105806633254192405515516",
"297151727776609117273041335871543415477",
"83489008549350845020780847220869080280",
"109231922170225855438601431601770869641",
"237257911720793150025722719320423673589"
]
},
"target": {
"file": "libtiff/tif_lzma.c"
},
"source": "https://gitlab.com/libtiff/libtiff@f7b79dc7dc86ccbaabe9882e2b9ffa5ee8dac917"
}
]