Vulnerabilities > Freeimage Project

DATE CVE VULNERABILITY TITLE RISK
2023-08-22 CVE-2020-24292 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in load function in PluginICO.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to run arbitrary code via opening of crafted ico file.
network
low complexity
freeimage-project CWE-120
8.8
2023-08-22 CVE-2020-24293 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in psdThumbnail::Read in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to run arbitrary code via opening of crafted psd file.
network
low complexity
freeimage-project CWE-120
8.8
2023-08-22 CVE-2020-24294 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in psdParser::UnpackRLE function in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to cuase a denial of service via opening of crafted psd file.
network
low complexity
freeimage-project CWE-120
6.5
2023-08-22 CVE-2020-24295 Classic Buffer Overflow vulnerability in Freeimage Project Freeimage 3.19.0
Buffer Overflow vulnerability in PSDParser.cpp::ReadImageLine() in FreeImage 3.19.0 [r1859] allows remote attackers to ru narbitrary code via use of crafted psd file.
network
low complexity
freeimage-project CWE-120
8.8
2023-08-22 CVE-2021-40262 Out-of-bounds Write vulnerability in Freeimage Project Freeimage
A stack exhaustion issue was discovered in FreeImage before 1.18.0 via the Validate function in PluginRAW.cpp.
network
low complexity
freeimage-project CWE-787
6.5
2023-08-22 CVE-2021-40263 Out-of-bounds Write vulnerability in Freeimage Project Freeimage 1.18.0
A heap overflow vulnerability in FreeImage 1.18.0 via the ofLoad function in PluginTIFF.cpp.
network
low complexity
freeimage-project CWE-787
8.8
2023-08-22 CVE-2021-40264 NULL Pointer Dereference vulnerability in Freeimage Project Freeimage
NULL pointer dereference vulnerability in FreeImage before 1.18.0 via the FreeImage_CloneTag function inFreeImageTag.cpp.
network
low complexity
freeimage-project CWE-476
6.5
2023-08-22 CVE-2021-40265 Out-of-bounds Write vulnerability in Freeimage Project Freeimage
A heap overflow bug exists FreeImage before 1.18.0 via ofLoad function in PluginJPEG.cpp.
network
low complexity
freeimage-project CWE-787
8.8
2023-08-22 CVE-2021-40266 NULL Pointer Dereference vulnerability in Freeimage Project Freeimage
FreeImage before 1.18.0, ReadPalette function in PluginTIFF.cpp is vulnerabile to null pointer dereference.
network
low complexity
freeimage-project CWE-476
6.5
2023-02-22 CVE-2021-33367 Out-of-bounds Read vulnerability in Freeimage Project Freeimage 3.18.0
Buffer Overflow vulnerability in Freeimage v3.18.0 allows attacker to cause a denial of service via a crafted JXR file.
local
low complexity
freeimage-project CWE-125
5.5