High severity8.8NVD Advisory· Published Jan 9, 2024· Updated Jun 17, 2026
CVE-2023-47994
CVE-2023-47994
Description
An integer overflow vulnerability in LoadPixelDataRLE4 function in PluginBMP.cpp in Freeimage 3.18.0 allows attackers to obtain sensitive information, cause a denial of service and/or run arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Freeimage/Freeimagedescription
=3.18.0+ 1 more
- (no CPE)range: =3.18.0
- cpe:2.3:a:freeimage_project:freeimage:3.18.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/thelastede/FreeImage-cve-poc/tree/master/CVE-2023-47994nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.