Show filters
27 Total Results
Displaying 1-10 of 27
Sort by:
Attacker Value
Unknown

CVE-2024-31570

Disclosure Date: September 19, 2024 (last updated September 26, 2024)
libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via an XPM file.
Attacker Value
Unknown

CVE-2023-47997

Disclosure Date: January 10, 2024 (last updated January 17, 2024)
An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an infinite loop and allows attackers to cause a denial of service.
Attacker Value
Unknown

CVE-2023-47996

Disclosure Date: January 09, 2024 (last updated January 17, 2024)
An integer overflow vulnerability in Exif.cpp::jpeg_read_exif_dir in FreeImage 3.18.0 allows attackers to obtain information and cause a denial of service.
Attacker Value
Unknown

CVE-2023-47995

Disclosure Date: January 09, 2024 (last updated January 25, 2024)
Memory Allocation with Excessive Size Value discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 allows attackers to cause a denial of service.
Attacker Value
Unknown

CVE-2023-47994

Disclosure Date: January 09, 2024 (last updated January 17, 2024)
An integer overflow vulnerability in LoadPixelDataRLE4 function in PluginBMP.cpp in Freeimage 3.18.0 allows attackers to obtain sensitive information, cause a denial of service and/or run arbitrary code.
Attacker Value
Unknown

CVE-2023-47993

Disclosure Date: January 09, 2024 (last updated January 17, 2024)
A Buffer out-of-bound read vulnerability in Exif.cpp::ReadInt32 in FreeImage 3.18.0 allows attackers to cause a denial-of-service.
Attacker Value
Unknown

CVE-2023-47992

Disclosure Date: January 09, 2024 (last updated January 17, 2024)
An integer overflow vulnerability in FreeImageIO.cpp::_MemoryReadProc in FreeImage 3.18.0 allows attackers to obtain sensitive information, cause a denial-of-service attacks and/or run arbitrary code.
Attacker Value
Unknown

CVE-2021-40266

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
FreeImage before 1.18.0, ReadPalette function in PluginTIFF.cpp is vulnerabile to null pointer dereference.
Attacker Value
Unknown

CVE-2021-40265

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
A heap overflow bug exists FreeImage before 1.18.0 via ofLoad function in PluginJPEG.cpp.
Attacker Value
Unknown

CVE-2021-40264

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
NULL pointer dereference vulnerability in FreeImage before 1.18.0 via the FreeImage_CloneTag function inFreeImageTag.cpp.