MEDIUM✓ PATCH🇬🇧 English

CVE-2024-53901

CVSS 5.5v3.1pub. 2024-11-24upd. 2025-06-09

The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image.

oryginał EN
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
  • Tonycoz Imager

    APP
    Tonycoz
    < 1.025
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
DoSMemory
CWE
Referencje

Powiązane podatności

CVE-2026-14454CRITICAL9.8PL ✓ten sam produkt

Imager dla Perl — błędna obsługa licznika wpisów EXIF prowadząca do DoS