CVE Database · CVE-2004-0421
CVSS v3.1
N/A
EPSS
4.11%
Published
Aug 18, 2004
Modified
Jun 16, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.
Weaknesses (CWE)
Affected Products (26)
References (20)