When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
2019-05-20T16:29:01.053
2024-11-21T04:22:25.800
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | freeimage_project | freeimage | 3.18.0 | Yes |
Operating System | canonical | ubuntu_linux | 18.04 | Yes |