CVE-2024-26540
- EPSS 0.13%
- Veröffentlicht 15.03.2024 01:15:58
- Zuletzt bearbeitet 10.06.2025 16:04:16
A heap-based buffer overflow in Clmg before 3.3.3 can occur via a crafted file to cimg_library::CImg<unsigned char>::_load_analyze.
CVE-2023-41484
- EPSS 0.09%
- Veröffentlicht 20.09.2023 20:15:11
- Zuletzt bearbeitet 21.11.2024 08:21:14
An issue in cimg.eu Cimg Library v2.9.3 allows an attacker to obtain sensitive information via a crafted JPEG file.
CVE-2022-1325
- EPSS 0.08%
- Veröffentlicht 31.08.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:40:29
A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is possible to trick the application into allocating huge buffer sizes like 64 Gigabyte upon reading the file fr...
CVE-2020-25693
- EPSS 0.47%
- Veröffentlicht 03.12.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:29
A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially crafted input file processed by CImg, which can lead to an impact to application availability or dat...
CVE-2019-13568
- EPSS 0.55%
- Veröffentlicht 31.07.2019 15:15:12
- Zuletzt bearbeitet 21.11.2024 04:25:11
CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a malformed BMP image.
CVE-2018-7637
- EPSS 0.23%
- Veröffentlicht 02.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:27
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a "16 colors" case, aka case 4.
CVE-2018-7638
- EPSS 0.23%
- Veröffentlicht 02.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:27
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a "256 colors" case, aka case 8.
CVE-2018-7639
- EPSS 0.23%
- Veröffentlicht 02.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:27
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a "16 bits colors" case, aka case 16.
CVE-2018-7640
- EPSS 0.23%
- Veröffentlicht 02.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:27
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a Monochrome case, aka case 1.
CVE-2018-7641
- EPSS 0.23%
- Veröffentlicht 02.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:27
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a "32 bits colors" case, aka case 32.