Menu

#363 CVE-2024-28562: buffer overflow in Imf_2_2::copyIntoFrameBuffer()

open
nobody
None
5
2024-10-07
2024-10-07
No

Buffer Overflow vulnerability in open source FreeImage v.3.19.0
[r1909] allows a local attacker to execute arbitrary code via the
Imf_2_2::copyIntoFrameBuffer() component when reading images in EXR
format.

The aim of this ticket is to forward upstream the vulnerabilities published at
https://github.com/Ruanxingzhi/vul-report/tree/master/freeimage-r1909.
Please see there for more details.

Related

Commit: [r1909]

Discussion


Log in to post a comment.

MongoDB Logo MongoDB