CVE-2019-12211
published 2019-05-20CVE-2019-12211: When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination…
PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
4.21%
89.8th percentile
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | freeimage | < freeimage 3.18.0+ds2-3 (bookworm) | freeimage 3.18.0+ds2-3 (bookworm) |
| freeimage_project | freeimage | — | — |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-3 | 3.18.0+ds2-3 |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-3 | 3.18.0+ds2-3 |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-3 | 3.18.0+ds2-3 |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-3 | 3.18.0+ds2-3 |
| freeimage_project | freeimage | >= 0 < 3.17.0+ds1-5+deb9u1build0.18.04.1 | 3.17.0+ds1-5+deb9u1build0.18.04.1 |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-1ubuntu3.1 | 3.18.0+ds2-1ubuntu3.1 |
| freeimage_project | freeimage | >= 0 < 3.18.0+ds2-6ubuntu5.1 | 3.18.0+ds2-6ubuntu5.1 |
| freeimage_project | freeimage | >= 0 < 3.15.4-3ubuntu0.1+esm3 | 3.15.4-3ubuntu0.1+esm3 |
| freeimage_project | freeimage | >= 0 < 3.17.0+ds1-2ubuntu0.1+esm1 | 3.17.0+ds1-2ubuntu0.1+esm1 |
| freeimage_project | freeimage | >= 0 < 3.17.0+ds1-5+deb9u1ubuntu0.1~esm1 | 3.17.0+ds1-5+deb9u1ubuntu0.1~esm1 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
freeimage vulnerabilities
osv·2024-01-16·CVSS 7.5
CVE-2019-12211 [HIGH] freeimage vulnerabilities
freeimage vulnerabilities
It was discovered that FreeImage incorrectly handled certain memory
operations. If a user were tricked into opening a crafted TIFF file, a
remote attacker could use this issue to cause a heap buffer overflow,
resulting in a denial of service attack. This issue only affected Ubuntu
16.04 LTS and Ubuntu 20.04 LTS. (CVE-2019-12211)
It was discovered that FreeImage incorrectly processed images under
certain circumstances. If a user were tricked into opening a crafted TIFF
file, a remote attacker could possibly use this issue to cause a stack
exhaustion condition, resulting in a denial of service attack. This issue
only affected Ubuntu 16.04 LTS and Ubuntu 20.04 LTS. (CVE-2019-12213)
It was discovered that FreeImage incorrectly processed certain images.
If a user or
GHSA
GHSA-v535-35pv-hpf9: When FreeImage 3
ghsa_unreviewed·2022-05-24
CVE-2019-12211 [HIGH] CWE-787 GHSA-v535-35pv-hpf9: When FreeImage 3
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
OSV
freeimage vulnerabilities
osv·2020-09-22·CVSS 7.5
CVE-2019-12211 [HIGH] freeimage vulnerabilities
freeimage vulnerabilities
It was discovered that FreeImage incorrectly handled certain memory
operations. If a user were tricked into opening a crafted TIFF file, a
remote attacker could use this issue to cause a heap buffer overflow,
resulting in a denial of service attack. (CVE-2019-12211)
It was discovered that FreeImage incorrectly processed images under
certain circumstances. If a user were tricked into opening a crafted TIFF
file, a remote attacker could possibly use this issue to cause a stack
exhaustion condition, resulting in a denial of service attack.
(CVE-2019-12213)
OSV
CVE-2019-12211: When FreeImage 3
osv·2019-05-20·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211: When FreeImage 3
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
Ubuntu
FreeImage vulnerabilities
vendor_ubuntu·2024-01-16·CVSS 7.5
CVE-2020-21427 [HIGH] FreeImage vulnerabilities
Title: FreeImage vulnerabilities
Summary: Several security issues were fixed in FreeImage.
It was discovered that FreeImage incorrectly handled certain memory
operations. If a user were tricked into opening a crafted TIFF file, a
remote attacker could use this issue to cause a heap buffer overflow,
resulting in a denial of service attack. This issue only affected Ubuntu
16.04 LTS and Ubuntu 20.04 LTS. (CVE-2019-12211)
It was discovered that FreeImage incorrectly processed images under
certain circumstances. If a user were tricked into opening a crafted TIFF
file, a remote attacker could possibly use this issue to cause a stack
exhaustion condition, resulting in a denial of service attack. This issue
only affected Ubuntu 16.04 LTS and Ubuntu 20.04 LTS. (CVE-2019-12213)
It was discovered
Ubuntu
FreeImage vulnerabilities
vendor_ubuntu·2020-09-22·CVSS 7.5
CVE-2019-12211 [HIGH] FreeImage vulnerabilities
Title: FreeImage vulnerabilities
Summary: Several security issues were fixed in FreeImage.
It was discovered that FreeImage incorrectly handled certain memory
operations. If a user were tricked into opening a crafted TIFF file, a
remote attacker could use this issue to cause a heap buffer overflow,
resulting in a denial of service attack. (CVE-2019-12211)
It was discovered that FreeImage incorrectly processed images under
certain circumstances. If a user were tricked into opening a crafted TIFF
file, a remote attacker could possibly use this issue to cause a stack
exhaustion condition, resulting in a denial of service attack.
(CVE-2019-12213)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2019-12211: freeimage - When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function ...
vendor_debian·2019·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211: freeimage - When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function ...
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
Scope: local
bookworm: resolved (fixed in 3.18.0+ds2-3)
bullseye: resolved (fixed in 3.18.0+ds2-3)
forky: resolved (fixed in 3.18.0+ds2-3)
sid: resolved (fixed in 3.18.0+ds2-3)
trixie: resolved (fixed in 3.18.0+ds2-3)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [epel-all]
bugzilla·2019-07-23·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [epel-all]
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp
bugzilla·2019-07-23·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destination address and the size of the copied data are not considered, resulting in a heap overflow.
Reference:
https://sourceforge.net/p/freeimage/discussion/36111/thread/e06734bed5/
Discussion:
Created freeimage tracking bugs for this issue:
Affects: epel-all [bug 1732248]
Affects: fedora-all [bug 1732246]
Created mingw-freeimage tracking bugs for this issue:
Affects: fedora-all [bug 1732247]
---
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependen
Bugzilla
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
bugzilla·2019-07-23·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
CVE-2019-12211 freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ve
Bugzilla
CVE-2019-12211 mingw-freeimage: freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
bugzilla·2019-07-23·CVSS 7.5
CVE-2019-12211 [HIGH] CVE-2019-12211 mingw-freeimage: freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
CVE-2019-12211 mingw-freeimage: freeimage: heap-based buffer overflow in PluginTIFF.cpp [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects mult
https://lists.debian.org/debian-lts-announce/2019/12/msg00012.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PUWVVP67FYM4GMWD7TPQ7C7JPPRUZHYE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VZ7KBYPPNRMX7RRWVJSX4T63E3TFB6TG/https://seclists.org/bugtraq/2019/Dec/45https://security.gentoo.org/glsa/202107-02https://sourceforge.net/p/freeimage/discussion/36111/thread/e06734bed5/https://usn.ubuntu.com/4529-1/https://www.debian.org/security/2019/dsa-4593https://lists.debian.org/debian-lts-announce/2019/12/msg00012.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PUWVVP67FYM4GMWD7TPQ7C7JPPRUZHYE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VZ7KBYPPNRMX7RRWVJSX4T63E3TFB6TG/https://seclists.org/bugtraq/2019/Dec/45https://security.gentoo.org/glsa/202107-02https://sourceforge.net/p/freeimage/discussion/36111/thread/e06734bed5/https://usn.ubuntu.com/4529-1/https://www.debian.org/security/2019/dsa-4593
2019-05-20
Published