[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4593-1 freeimage -- freeimage

ID: oval:org.secpod.oval:def:604657Date: (C)2019-12-30   (M)2024-02-26
Class: PATCHFamily: unix




It was found that freeimage, a graphics library, was affected by the following two security issues: CVE-2019-12211 Heap buffer overflow caused by invalid memcpy in PluginTIFF. This flaw might be leveraged by remote attackers to trigger denial of service or any other unspecified impact via crafted TIFF data. CVE-2019-12213 Stack exhaustion caused by unwanted recursion in PluginTIFF. This flaw might be leveraged by remote attackers to trigger denial of service via crafted TIFF data.

Platform:
Debian 10.x
Debian 9.x
Product:
libfreeimageplus3
libfreeimage3
libfreeimage-dev
libfreeimageplus-dev
libfreeimageplus-doc
Reference:
DSA-4593-1
CVE-2019-12211
CVE-2019-12213
CVE    2
CVE-2019-12213
CVE-2019-12211
CPE    3
cpe:/o:debian:debian_linux:10.x
cpe:/o:debian:debian_linux:9.x
cpe:/a:freeimage_project:libfreeimage-dev

© SecPod Technologies