Back to search
CVE-2012-0025
Published: Nov 2, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
47322
third-party-advisory
x_refsource_SECUNIA
77958
vdb-entry
x_refsource_OSVDB
http://www.imagemagick.org/download/delegates/libfpx-1.3.1-1.zip
x_refsource_CONFIRM
[oss-security] 20120103 Re: CVE request: libfpx "Free_All_Memory()" Double-Free Vulnerability
mailing-list
x_refsource_MLIST
47246
third-party-advisory
x_refsource_SECUNIA
18256
exploit
x_refsource_EXPLOIT-DB
GLSA-201605-03
vendor-advisory
x_refsource_GENTOO
libfpx-freeallmemory-code-exec(71892)
vdb-entry
x_refsource_XF
[oss-security] 20121102 Re: libfpx Duplicate CVEs (CVE-2011-5232 and CVE-2012-0025)
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now