VYPR
Vendor

Freeimage Project

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2016-5684HigJan 6, 2017
    risk 0.51cvss 7.8epss 0.01

    An exploitable out-of-bounds write vulnerability exists in the XMP image handling functionality of the FreeImage library. A specially crafted XMP file can cause an arbitrary memory overwrite resulting in code execution. An attacker can provide a malicious image to trigger this vulnerability.

  • CVE-2025-70968Jan 14, 2026
    risk 0.00cvss epss 0.00

    FreeImage 3.18.0 contains a Use After Free in PluginTARGA.cpp;loadRLE().

  • CVE-2025-65803Dec 10, 2025
    risk 0.00cvss epss 0.00

    An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.

  • CVE-2015-0852Sep 29, 2015
    risk 0.00cvss epss 0.02

    Multiple integer underflows in PluginPCX.cpp in FreeImage 3.17.0 and earlier allow remote attackers to cause a denial of service (heap memory corruption) via vectors related to the height and width of a window.