Записи CImg
14 опубликованных записей вендора cimg.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 85,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-125 Out-of-bounds Read6
- CWE-122 Heap-based Buffer Overflow1
- CWE-190 Integer Overflow or Wraparound1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-415 Double Free1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
14 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2019-1010174Proof of concept | CImg The CImg Library v.2.3.3 and earlier is affected by: command injection.cimg · cimg library · CWE-77 | Критическая9,8 | — | 5,0 % | 25 июл. 2019 г. |
36Наблюдать | CVE-2019-13568Эксплойта нет | CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a malformed BMP image.cimg · cimg · CWE-787 | Высокая8,8 | — | 1,7 % | 31 июл. 2019 г. |
32Наблюдать | CVE-2020-25693Эксплойта нет | A flaw was found in CImg in versions prior to 2.9.3.cimg · cimg · CWE-190 | Высокая8,1 | — | 1,5 % | 3 дек. 2020 г. |
32Наблюдать | CVE-2023-41484Эксплойта нет | An issue in cimg.eu Cimg Library v2.9.3 allows an attacker to obtain sensitive information via a crafted JPEG file.cimg · cimg · CWE-401 | Высокая8,1 | — | 0,7 % | 20 сент. 2023 г. |
31Наблюдать | CVE-2018-7588Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,3 % | 1 мар. 2018 г. |
31Наблюдать | CVE-2018-7589Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-415 | Высокая7,8 | — | 1,3 % | 1 мар. 2018 г. |
31Наблюдать | CVE-2018-7638Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,2 % | 2 мар. 2018 г. |
31Наблюдать | CVE-2018-7637Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,2 % | 2 мар. 2018 г. |
31Наблюдать | CVE-2018-7641Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,2 % | 2 мар. 2018 г. |
31Наблюдать | CVE-2018-7639Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,2 % | 2 мар. 2018 г. |
31Наблюдать | CVE-2018-7640Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-125 | Высокая7,8 | — | 1,2 % | 2 мар. 2018 г. |
31Наблюдать | CVE-2018-7587Эксплойта нет | An issue was discovered in CImg v.220.cimg · cimg · CWE-119 | Высокая7,8 | — | 1,1 % | 1 мар. 2018 г. |
31Наблюдать | CVE-2024-26540Эксплойта нет | A heap-based buffer overflow in Clmg before 3.3.3 can occur via a crafted file to cimg_library::CImg<unsigned char>::_load_analyze.cimg · cimg · CWE-122 | Высокая7,8 | — | 0,3 % | 14 мар. 2024 г. |
22Наблюдать | CVE-2022-1325Эксплойта нет | A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it iscimg · cimg · CWE-400 | Средняя5,5 | — | 0,4 % | 31 авг. 2022 г. |
- CVE-2019-101017440В плане
CImg The CImg Library v.2.3.3 and earlier is affected by: command injection.
КритическаяCVSS 9,8Proof of conceptEPSS 5 %cimg · cimg library25 июл. 2019 г.
- CVE-2019-1356836Наблюдать
CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a malformed BMP image.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %cimg · cimg31 июл. 2019 г.
- CVE-2020-2569332Наблюдать
A flaw was found in CImg in versions prior to 2.9.3.
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %cimg · cimg3 дек. 2020 г.
- CVE-2023-4148432Наблюдать
An issue in cimg.eu Cimg Library v2.9.3 allows an attacker to obtain sensitive information via a crafted JPEG file.
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %cimg · cimg20 сент. 2023 г.
- CVE-2018-758831Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg1 мар. 2018 г.
- CVE-2018-758931Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg1 мар. 2018 г.
- CVE-2018-763831Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg2 мар. 2018 г.
- CVE-2018-763731Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg2 мар. 2018 г.
- CVE-2018-764131Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg2 мар. 2018 г.
- CVE-2018-763931Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg2 мар. 2018 г.
- CVE-2018-764031Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg2 мар. 2018 г.
- CVE-2018-758731Наблюдать
An issue was discovered in CImg v.220.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cimg · cimg1 мар. 2018 г.
- CVE-2024-2654031Наблюдать
A heap-based buffer overflow in Clmg before 3.3.3 can occur via a crafted file to cimg_library::CImg<unsigned char>::_load_analyze.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %cimg · cimg14 мар. 2024 г.
- CVE-2022-132522Наблюдать
A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is
СредняяCVSS 5,5Эксплойта нетEPSS 0 %cimg · cimg31 авг. 2022 г.