Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-28562

Опубликовано: 20 мар. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6.8

Описание

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::copyIntoFrameBuffer() component when reading images in EXR format.

РелизСтатусПримечание
devel

deferred

2025-01-16
esm-apps/bionic

deferred

2025-01-16
esm-apps/focal

deferred

2025-01-16
esm-apps/jammy

deferred

2025-01-16
esm-apps/noble

deferred

2025-01-16
esm-apps/xenial

deferred

2025-01-16
esm-infra-legacy/trusty

deferred

2025-01-16
focal

ignored

end of standard support, was deferred [2025-01-16]
jammy

deferred

2025-01-16
mantic

ignored

end of life, was needs-triage

Показывать по

EPSS

Процентиль: 54%
0.00314
Низкий

6.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.8
nvd
почти 2 года назад

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::copyIntoFrameBuffer() component when reading images in EXR format.

CVSS3: 6.8
debian
почти 2 года назад

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909 ...

CVSS3: 6.8
github
почти 2 года назад

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::copyIntoFrameBuffer() component when reading images in EXR format.

EPSS

Процентиль: 54%
0.00314
Низкий

6.8 Medium

CVSS3