Vulnerabilities > Cimg

DATE CVE VULNERABILITY TITLE RISK
2023-09-20 CVE-2023-41484 Memory Leak vulnerability in Cimg 2.9.3
An issue in cimg.eu Cimg Library v2.9.3 allows an attacker to obtain sensitive information via a crafted JPEG file.
network
low complexity
cimg CWE-401
8.1
2022-08-31 CVE-2022-1325 Allocation of Resources Without Limits or Throttling vulnerability in Cimg
A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is possible to trick the application into allocating huge buffer sizes like 64 Gigabyte upon reading the file from disk or from a virtual buffer.
local
low complexity
cimg CWE-770
5.5
2020-12-03 CVE-2020-25693 A flaw was found in CImg in versions prior to 2.9.3.
network
low complexity
cimg fedoraproject
8.1
2019-07-31 CVE-2019-13568 Out-of-bounds Write vulnerability in Cimg
CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a malformed BMP image.
network
low complexity
cimg CWE-787
8.8
2019-07-25 CVE-2019-1010174 Command Injection vulnerability in multiple products
CImg The CImg Library v.2.3.3 and earlier is affected by: command injection.
network
low complexity
cimg debian CWE-77
critical
9.8
2018-03-02 CVE-2018-7641 Out-of-bounds Read vulnerability in Cimg .220
An issue was discovered in CImg v.220.
local
low complexity
cimg CWE-125
7.8
2018-03-02 CVE-2018-7640 Out-of-bounds Read vulnerability in Cimg .220
An issue was discovered in CImg v.220.
local
low complexity
cimg CWE-125
7.8
2018-03-02 CVE-2018-7639 Out-of-bounds Read vulnerability in Cimg .220
An issue was discovered in CImg v.220.
local
low complexity
cimg CWE-125
7.8
2018-03-02 CVE-2018-7638 Out-of-bounds Read vulnerability in Cimg .220
An issue was discovered in CImg v.220.
local
low complexity
cimg CWE-125
7.8
2018-03-02 CVE-2018-7637 Out-of-bounds Read vulnerability in Cimg .220
An issue was discovered in CImg v.220.
local
low complexity
cimg CWE-125
7.8