Back

CVE-2004-1049

Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote attackers to execute arbitrary code via a .bmp, .cur, .ico or .ani file with a large image size field, which leads to a buffer overflow, aka the "Cursor and Icon Format Handling Vulnerability."

Published: Dec 31, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (9)

Vendor Product Version
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2003_server r2
microsoft windows_nt *
microsoft windows_xp *
microsoft windows_xp *

GitHub Security Advisory GHSA-3hwp-mf4v-qcwm

Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote...

Risk Scores

CVSS Score 5.1 / 10
EPSS Score 30.58%

Top 2% most likely to be exploited

Threat Score 29.6 / 100

Data Sources

NVD EPSS GitHub