Back

CVE-2004-1244

Windows Media Player 9 allows remote attackers to execute arbitrary code via a PNG file containing large (1) width or (2) height values, aka the "PNG Processing Vulnerability."

Published: Feb 8, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
microsoft windows_media_player 9

GitHub Security Advisory GHSA-wvcf-x376-222j

Windows Media Player 9 allows remote attackers to execute arbitrary code via a PNG file...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 33.20%

Top 2% most likely to be exploited

Threat Score 40 / 100

Data Sources

NVD EPSS GitHub