CVE-2004-0599
Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image reading capability in libpng 1.2.5 and earlier allow remote attackers to cause a denial of service (application crash) via a malformed PNG image.
- Affected products
- Libpng
- Greg Roelofs Libpng
- ≤ 1.2.5
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 6.2% (93th percentile)
- NVD status
- Modified
- Published
- 2004-08-05
CVE-2004-0599 at NVD
No indexed exploits for CVE-2004-0599 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2004-0599 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.