
Proof-of-concept exploit for a heap buffer overflow in libpng on PS4/PS5. Generates a malicious PNG that triggers the vulnerability when opened in the gallery via FTP replacement.
1-press share button and make screenshot
2-with ftp go to path:/user/av_contents/photo/NPXS20001/NPXS20001/XXX/ you will find screenshot that you make.
3-copy it to pc and run it with make_png.py it will output poc.png
4-rename it to name of the screenshot then replace it with ftp on same path
5-try to open it from gallery it will give error