buildroot ▾
›
2025.02.x ▾
›
vulnerability
›
CVE-2019-12213
Component Overview
Vulnerability Overview
Name
CVE-2019-12213
Source
NVD (
link
)
Debian (
link
)
Description
When FreeImage 3.18.0 reads a special TIFF file, the TIFFReadDirectory function in PluginTIFF.cpp always returns 1, leading to stack exhaustion.
CWEs
CWE-674
Published Date
May 20, 2019
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://lists.debian.org/debian-lts-announce/2019/12/msg00012.html
Mailing List
https://seclists.org/bugtraq/2019/Dec/45
Mailing List
https://security.gentoo.org/glsa/202107-02
Third Party Advisory
https://sourceforge.net/p/freeimage/discussion/36111/thread/e06734bed5/
Exploit
https://usn.ubuntu.com/4529-1/
Third Party Advisory
https://www.debian.org/security/2019/dsa-4593
Third Party Advisory
https://lists.debian.org/debian-lts-announce/2019/12/msg00012.html
Mailing List
https://seclists.org/bugtraq/2019/Dec/45
Mailing List
https://security.gentoo.org/glsa/202107-02
Third Party Advisory
https://sourceforge.net/p/freeimage/discussion/36111/thread/e06734bed5/
Exploit
https://usn.ubuntu.com/4529-1/
Third Party Advisory
https://www.debian.org/security/2019/dsa-4593
Third Party Advisory
Analysis
#
Affected Component
Analysis
libfreeimage
Patched
Vulnerability Ratings
#
6.5
CVSSv31
4.3
CVSSv2
Resolved with patches
#
libfreeimage (buildroot:2025.02.x)
#
Title
Author
Resolve
1
Patch #1
Thomas Perale <thomas.perale@mind.be>
CVE-2019-12211
CVE-2019-12213