First published: Fri Feb 09 2024(Updated: )
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Enlightenment Imlib2 | =1.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25448 is considered a high severity vulnerability due to its potential for causing a heap buffer overflow.
To fix CVE-2024-25448, update your imlib2 library to the latest version available, beyond 1.9.1.
CVE-2024-25448 is caused by improper handling of crafted image files in the imlib_free_image_and_decache function.
Users of imlib2 version 1.9.1 are affected by CVE-2024-25448.
An attacker could exploit CVE-2024-25448 to execute arbitrary code or crash affected systems by causing a heap buffer overflow.