CVE-2020-21428

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
22/08/2023
Last modified:
02/05/2025

Description

Buffer Overflow vulnerability in function LoadRGB in PluginDDS.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary code and cause other impacts via crafted image file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:freeimage_project:freeimage:3.18.0:*:*:*:*:*:*:*