VendorsFreeImage projectfreeimageany version
Vulnerabilities

FreeImage project FreeImage any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2024-31570
libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via an XPM file.
Published 2024-09-19 · Analyzed
9.8EPSS 0.006
CVE-2021-40265
A heap overflow bug exists FreeImage before 1.18.0 via ofLoad function in PluginJPEG.cpp.
Published 2023-08-22 · Modified
8.8EPSS 0.009
CVE-2024-9029
Freeimage: heap buffer overflow in tiff_read_iptc_profile
Published 2024-09-27 · Analyzed
7.5EPSS 0.005
CVE-2021-40266
FreeImage before 1.18.0, ReadPalette function in PluginTIFF.cpp is vulnerabile to null pointer dereference.
Published 2023-08-22 · Modified
6.5EPSS 0.010
CVE-2021-40262
A stack exhaustion issue was discovered in FreeImage before 1.18.0 via the Validate function in PluginRAW.cpp.
Published 2023-08-22 · Modified
6.5EPSS 0.007
CVE-2021-40264
NULL pointer dereference vulnerability in FreeImage before 1.18.0 via the FreeImage_CloneTag function inFreeImageTag.cpp.
Published 2023-08-22 · Modified
6.5EPSS 0.007
CVE-2025-65803
An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.
Published 2025-12-10 · Analyzed
6.5EPSS 0.003
CVE-2015-0852
Multiple integer underflows in PluginPCX.cpp in FreeImage 3.17.0 and earlier allow remote attackers to cause a denial of service (heap memory corruption) via vectors related to the height and width of a window.
Published 2015-09-29 · Modified
5.0EPSS 0.030