Buffer Out-of-Bound Read Vulnerability in FreeImage by FreeImage
CVE-2023-47993

6.5MEDIUM

Key Information:

Vendor

FreeImage

Status
Vendor
CVE Published:
9 January 2024

What is CVE-2023-47993?

A buffer out-of-bounds read vulnerability has been identified in FreeImage 3.18.0, specifically in the Exif.cpp::ReadInt32 function. This vulnerability can be exploited by attackers to potentially cause a denial-of-service condition, affecting the stability and availability of the application. It is crucial for users and administrators to implement appropriate security measures to mitigate the risks associated with this vulnerability.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.