CVE-2020-24294: Buffer Overflow
Published Aug 22, 2023
·Updated
Buffer Overflow vulnerability in psdParser::UnpackRLE function in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to cuase a denial of service via opening of crafted psd file.
Affected Software
1 affected component
Freeimage Project Freeimage=3.19.0
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2020-24294.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Buffer Overflow vulnerability in psdParser::UnpackRLE function in PSDParser.cpp in FreeImage 3.19.0'.
3
What is the severity of CVE-2020-24294?
The severity of CVE-2020-24294 is medium with a CVSS score of 6.5.
4
How does CVE-2020-24294 impact the affected software?
CVE-2020-24294 allows remote attackers to cause a denial of service by opening a crafted psd file in FreeImage 3.19.0.
5
Is there a fix available for CVE-2020-24294?
Yes, to fix CVE-2020-24294, it is recommended to update FreeImage to a version that has addressed the vulnerability.