A vulnerability categorized as critical has been discovered in libpng up to 1.6.50. The affected element is the function png_do_quantize. The manipulation results in heap-based buffer overflow.

This vulnerability is identified as CVE-2025-64505. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.