CVE-2019-12213 PUBLISHED

When FreeImage 3.18.0 reads a special TIFF file, the TIFFReadDirectory function in PluginTIFF.cpp always returns 1, leading to stack exhaustion.

EPSS 0.33% · 55.8th percentile

Risk Scores

EPSS Score
0.33%
55.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSfreeimage0, 3.15.4-6, 3.17.0+ds1-1.1
Ubuntu:18.04:LTSfreeimage3.17.0+ds1-5build2, 0
Ubuntu:Pro:14.04:LTSfreeimage0, 3.15.1-2build1, 3.15.1-2build2
Ubuntu:20.04:LTSfreeimage0, 3.18.0+ds2-1ubuntu1, 3.18.0+ds2-1ubuntu2

Timeline

References

Open in Interactive Console →