CVE-2018-12109
An issue was discovered in Free Lossless Image Format (FLIF) 0.3. The TransformPaletteC<FileIO>::process function in transform/palette_C.hpp allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PAM image file.
- Flif
- = 0.3
- Fix
- Available
- CVSS 3.0
- 7.8 HIGH
- EPSS
- 1.4% (69th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2018-06-11
CVE-2018-12109 at NVD
No indexed exploits for CVE-2018-12109 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2018-12109 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.