An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted bmp image, a different vulnerability than CVE-2018-7588. This is in a "16 colors" case, aka case 4.
References
Configurations
History
21 Nov 2024, 04:12
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/dtschump/CImg/issues/185 - Exploit, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2019/09/msg00030.html - | |
References | () https://lists.debian.org/debian-lts-announce/2020/10/msg00033.html - |
Information
Published : 2018-03-02 14:29
Updated : 2024-11-21 04:12
NVD link : CVE-2018-7637
Mitre link : CVE-2018-7637
CVE.ORG link : CVE-2018-7637
JSON object : View
Products Affected
cimg
- cimg
CWE
CWE-125
Out-of-bounds Read