CVE-2024-25447: Buffer Overflow
Published Feb 9, 2024
·Updated
An issue in the imlibloadimagewitherrorreturn function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.
Affected Software
1 affected component
Enlightenment imlib2=1.9.1
Event History
Feb 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-25447?
CVE-2024-25447 has a high severity due to the potential for heap buffer overflow which can be exploited by attackers.
2
How do I fix CVE-2024-25447?
To fix CVE-2024-25447, upgrade to a patched version of imlib2 that addresses the heap buffer overflow vulnerability.
3
What impact does CVE-2024-25447 have on imlib2 v1.9.1?
CVE-2024-25447 allows attackers to perform a heap buffer overflow, which can lead to remote code execution or application crashes.
4
Who is affected by CVE-2024-25447?
Users of imlib2 version 1.9.1 are impacted by CVE-2024-25447 and should take immediate action to mitigate the vulnerability.
5
Can CVE-2024-25447 be exploited remotely?
Yes, CVE-2024-25447 can be exploited remotely by passing a crafted image to the affected imlib2 library.