Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2004-0421

The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.

  • Published: Aug 18, 2004
  • Updated: Apr 13, 2023
  • CVE: CVE-2004-0421
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
openpkg / openpkg 2.0 2.0.x
redhat / libpng 1.2.2-16 1.2.2-16.x
redhat / libpng 1.2.2-20 1.2.2-20.x
openpkg / openpkg 1.3 1.3.x
trustix / secure_linux 2.0 2.0.x
redhat / enterprise_linux_desktop 3.0 3.0.x
redhat / enterprise_linux 3.0 3.0.x
redhat / enterprise_linux 2.1 2.1.x
trustix / secure_linux 2.1 2.1.x
libpng / libpng 1.2.2 1.2.2.x
libpng / libpng 1.0.8 1.0.8.x
libpng / libpng 1.2.4 1.2.4.x
libpng / libpng 1.0.14 1.0.14.x
libpng / libpng 1.2.0 1.2.0.x
libpng / libpng 1.0.11 1.0.11.x
libpng / libpng 1.0.9 1.0.9.x
libpng / libpng 1.0.13 1.0.13.x
libpng / libpng 1.0.6 1.0.6.x
libpng / libpng 1.0.7 1.0.7.x
libpng / libpng 1.2.3 1.2.3.x
libpng / libpng 1.0.5 1.0.5.x
libpng / libpng 1.2.1 1.2.1.x
libpng / libpng 1.0.12 1.0.12.x
libpng / libpng 1.2.5 1.2.5.x
libpng / libpng 1.0.0 1.0.0.x
libpng / libpng 1.0.10 1.0.10.x