Vulnerabilities > Freeimage Project > Freeimage > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-10 CVE-2023-47997 Infinite Loop vulnerability in Freeimage Project Freeimage 3.18.0
An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an infinite loop and allows attackers to cause a denial of service.
network
low complexity
freeimage-project CWE-835
6.5
2024-01-09 CVE-2023-47993 Out-of-bounds Read vulnerability in Freeimage Project Freeimage 3.18.0
A Buffer out-of-bound read vulnerability in Exif.cpp::ReadInt32 in FreeImage 3.18.0 allows attackers to cause a denial-of-service.
network
low complexity
freeimage-project CWE-125
6.5
2024-01-09 CVE-2023-47995 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.18.0
Memory Allocation with Excessive Size Value discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 allows attackers to cause a denial of service.
network
low complexity
freeimage-project CWE-120
6.5
2024-01-09 CVE-2023-47996 Integer Overflow or Wraparound vulnerability in Freeimage Project Freeimage 3.18.0
An integer overflow vulnerability in Exif.cpp::jpeg_read_exif_dir in FreeImage 3.18.0 allows attackers to obtain information and cause a denial of service.
network
low complexity
freeimage-project CWE-190
6.5
2023-08-22 CVE-2020-22524 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in FreeImage_Load function in FreeImage Library 3.19.0(r1828) allows attackers to cuase a denial of service via crafted PFM file.
network
low complexity
freeimage-project CWE-120
6.5
2023-08-22 CVE-2020-24294 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in psdParser::UnpackRLE function in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to cuase a denial of service via opening of crafted psd file.
network
low complexity
freeimage-project CWE-120
6.5
2023-08-22 CVE-2021-40262 Out-of-bounds Write vulnerability in Freeimage Project Freeimage
A stack exhaustion issue was discovered in FreeImage before 1.18.0 via the Validate function in PluginRAW.cpp.
network
low complexity
freeimage-project CWE-787
6.5
2023-08-22 CVE-2021-40264 NULL Pointer Dereference vulnerability in Freeimage Project Freeimage
NULL pointer dereference vulnerability in FreeImage before 1.18.0 via the FreeImage_CloneTag function inFreeImageTag.cpp.
network
low complexity
freeimage-project CWE-476
6.5
2023-08-22 CVE-2021-40266 NULL Pointer Dereference vulnerability in Freeimage Project Freeimage
FreeImage before 1.18.0, ReadPalette function in PluginTIFF.cpp is vulnerabile to null pointer dereference.
network
low complexity
freeimage-project CWE-476
6.5
2023-02-22 CVE-2021-33367 Out-of-bounds Read vulnerability in Freeimage Project Freeimage 3.18.0
Buffer Overflow vulnerability in Freeimage v3.18.0 allows attacker to cause a denial of service via a crafted JXR file.
local
low complexity
freeimage-project CWE-125
5.5