📦 Freeimage

by Freeimage Project

🔍 What is Freeimage?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-70968

CRITICAL CVSS 9.8 Jan 14, 2026

FreeImage 3.18.0 contains a use-after-free vulnerability in the TARGA image parser that allows attackers to execute arbitrary code or cause denial of service. This affects any application that uses Fr...

CVE-2024-31570

CRITICAL CVSS 9.8 Sep 19, 2024

CVE-2024-31570 is a critical stack-based buffer overflow vulnerability in libfreeimage's XPM file parser. Attackers can exploit this by crafting malicious XPM files to execute arbitrary code or crash ...

CVE-2024-9029

HIGH CVSS 7.5 Sep 27, 2024

A buffer over-read vulnerability in FreeImage library allows attackers to cause denial of service by processing a specially crafted image. This affects any application that uses FreeImage to parse ima...

CVE-2024-28578

HIGH CVSS 8.4 Mar 20, 2024

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the Load() function when processing RAS format images. This affects any application ...

CVE-2024-28580

HIGH CVSS 8.4 Mar 20, 2024

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the ReadData() function when processing RAS format images. This affects any applicat...

CVE-2024-28582

HIGH CVSS 8.4 Mar 20, 2024

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the rgbe_RGBEToFloat() function when processing HDR format images. This affects any ...

CVE-2024-28566

HIGH CVSS 8.4 Mar 20, 2024

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the AssignPixel() function when processing malicious TIFF images. This affects any a...

CVE-2024-28569

HIGH CVSS 7.8 Mar 20, 2024

A buffer overflow vulnerability in FreeImage v3.19.0 allows local attackers to execute arbitrary code by exploiting the Imf_2_2::Xdr::read() function when processing EXR format images. This affects an...

CVE-2023-47994

HIGH CVSS 8.8 Jan 9, 2024

An integer overflow vulnerability in FreeImage's BMP plugin allows attackers to read memory contents, crash applications, or execute arbitrary code when processing specially crafted BMP images. This a...

CVE-2021-40263

HIGH CVSS 8.8 Aug 22, 2023

A heap overflow vulnerability in FreeImage 1.18.0 allows attackers to execute arbitrary code or cause denial of service by processing specially crafted TIFF files. This affects any application or syst...

CVE-2021-40265

HIGH CVSS 8.8 Aug 22, 2023

CVE-2021-40265 is a heap overflow vulnerability in FreeImage's JPEG plugin that allows attackers to execute arbitrary code or cause denial of service. This affects any application that uses FreeImage ...

CVE-2020-24292

HIGH CVSS 8.8 Aug 22, 2023

This is a buffer overflow vulnerability in FreeImage's ICO file parser that allows remote attackers to execute arbitrary code by tricking a user or system into opening a malicious ICO file. It affects...

CVE-2020-24295

HIGH CVSS 8.8 Aug 22, 2023

CVE-2020-24295 is a buffer overflow vulnerability in FreeImage's PSD parser that allows remote attackers to execute arbitrary code by providing a specially crafted PSD file. This affects any applicati...

CVE-2020-21428

HIGH CVSS 7.8 Aug 22, 2023

A buffer overflow vulnerability in FreeImage's DDS plugin allows remote attackers to execute arbitrary code by tricking a user or system into processing a specially crafted image file. This affects an...

CVE-2020-21426

HIGH CVSS 7.8 Aug 22, 2023

A buffer overflow vulnerability in FreeImage's EXR plugin allows remote attackers to execute arbitrary code by providing a crafted image file. This affects systems using FreeImage 3.18.0 to process EX...

CVE-2025-65803

MEDIUM CVSS 6.5 Dec 10, 2025

An integer overflow vulnerability in FreeImage's PSD parser allows attackers to cause Denial of Service by supplying a specially crafted PSD file. This affects applications using FreeImage v3.18.0 and...