CVE-2004-1095

CRITICAL ⚠ Exploit

Multiple integer overflows in (1) readbmp.c, (2) readgif.c, (3) readgif.c, (4) readmrf.c, (5) readpcx.c, (6) readpng.c,(7) readpnm.c, (8) readprf.c, (9) readtiff.c, (10) readxbm.c, (11) readxpm.c i...

Affects 3 products across 2 vendors.

BCS8.91
CVSS 2.010.0
EPSS9.4%
Percentile95th
PatchPatched
CVSS Vector — Plain English Remotely exploitable over the network, low complexity.
◆ SAGE Intelligence — CITED Relevance Research Team

Multiple integer overflows in various image reading functions in zgv 5.8 can lead to buffer overflows, allowing remote attackers to execute arbitrary code.

BSID: BS-2005-GLOBAL-159327-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2004-1095?
Multiple integer overflows in various image reading functions in zgv 5.8 can lead to buffer overflows, allowing remote attackers to execute arbitrary code.
What is the CVSS score for CVE-2004-1095?
CVE-2004-1095 has CVSS 10.0 (Critical). Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C. EPSS: 9.4%.
Is CVE-2004-1095 actively exploited?
Public exploit available for CVE-2004-1095. Exploitation risk elevated.
How do I remediate CVE-2004-1095?
Priority: IMMEDIATE. Advisory: http://www.securityfocus.com/bid/11556 PSIRT: [email protected]
What systems are affected by CVE-2004-1095?
CVE-2004-1095 affects: Debian, Zgv, Zgv.
Vulnerability Details
CVE IDCVE-2004-1095
BSIDBS-2005-GLOBAL-159327-C BreachSpider Global ID
CVSS VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Published2005-01-10
Last Modified2026-04-16
ICS Relevance0%
SourceNVD
Official Description

Multiple integer overflows in (1) readbmp.c, (2) readgif.c, (3) readgif.c, (4) readmrf.c, (5) readpcx.c, (6) readpng.c,(7) readpnm.c, (8) readprf.c, (9) readtiff.c, (10) readxbm.c, (11) readxpm.c in zgv 5.8 allow remote attackers to execute arbitrary code via certain image headers that cause calculations to be overflowed and small buffers to be allocated, leading to buffer overflows. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Attackers can exploit these vulnerabilities by crafting malicious image files with specific headers that cause integer overflows during the image processing. This results in small buffers being allocated, leading to buffer overflows and potential code execution.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Debian Debian Linux
Zgv Zgv Image Viewer
Zgv Xzgv Image Viewer
Remediation
View Vendor Advisory →

Remediation Priority: IMMEDIATE

Vendor PSIRT: [email protected]
Threat Intelligence
● Threat Intelligence Validated: July 2026 | Threat Age: 7853 Days
CISA KEVNot in KEV catalog
Public Exploit⚠ AvailableReference
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
Related CVEs affecting Debian
CVE-2000-0666 10.0 rpc.statd in the nfs-utils package in various Linux distributions does not pr... CVE-2001-0233 10.0 Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to c... CVE-2005-3625 10.0 Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS... CVE-2001-0554 10.0 Buffer overflow in BSD-based telnetd telnet daemon on various operating syste... CVE-2003-0648 10.0 Multiple buffer overflows in vfte, based on FTE, before 0.50, allow local use...
View all Debian CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →