CVE-2024-28562: Buffer Overflow
Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf22::copyIntoFrameBuffer() component when reading images in EXR format.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28562?
CVE-2024-28562 is considered a high severity vulnerability due to its ability to allow local attackers to execute arbitrary code.
How do I fix CVE-2024-28562?
To fix CVE-2024-28562, upgrade FreeImage to the latest version that addresses this buffer overflow vulnerability.
What component is affected by CVE-2024-28562?
CVE-2024-28562 affects the Imf_2_2::copyIntoFrameBuffer() component when processing EXR format images.
Who is affected by CVE-2024-28562?
Users of FreeImage version 3.19.0 are affected by CVE-2024-28562, particularly those handling EXR images.
What type of attack is enabled by CVE-2024-28562?
CVE-2024-28562 enables local attackers to execute arbitrary code through a buffer overflow vulnerability.