A flaw was found in the freeimage library. Processing a crafted image can cause a buffer over-read of 1 byte in the read_iptc_profile function in the Source/Metadata/IPTC.cpp file because the size of the profile is not being sanitized, causing a crash in the application linked to the library, resulting in a denial of service.
References
Configurations
No configuration.
History
27 Sep 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
Summary | (en) A flaw was found in the freeimage library. Processing a crafted image can cause a buffer over-read of 1 byte in the read_iptc_profile function in the Source/Metadata/IPTC.cpp file because the size of the profile is not being sanitized, causing a crash in the application linked to the library, resulting in a denial of service. |
27 Sep 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-27 07:15
Updated : 2024-09-30 12:46
NVD link : CVE-2024-9029
Mitre link : CVE-2024-9029
CVE.ORG link : CVE-2024-9029
JSON object : View
Products Affected
No product.
CWE
CWE-126
Buffer Over-read