CVE-2025-65803

Name
CVE-2025-65803
Description
An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
cve@mitre.org https://freeimage.sourceforge.io/download.html
cve@mitre.org https://gist.github.com/1mxml/cabd6d972557d9d992fe5f4f6ca1dd87

Match rules

CPE URI Source package Min version Max version
n/a == n/a == None
cpe:2.3:a:freeimage_project:freeimage:*:*:*:*:*:*:*:* freeimage >= None <= 3.18.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
freeimage edge-community 3.18.0-r5 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage edge-community 3.18.0-r4 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage edge-community 3.18.0-r3 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage edge-community 3.18.0-r2 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage 3.23-community 3.18.0-r5 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage 3.22-community 3.18.0-r5 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage 3.22-community 3.18.0-r4 Taner Tas <taner76@gmail.com> possibly vulnerable
freeimage 3.22-community 3.18.0-r2 None possibly vulnerable