Null Pointer Dereference vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the jpeg_read_exif_profile_raw() function when reading images in JPEG format.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Freeimage | Freeimage_project | 3.19.0 (including) | 3.19.0 (including) |
| Freeimage | Ubuntu | focal | * |
| Freeimage | Ubuntu | mantic | * |
| Freeimage | Ubuntu | oracular | * |
| Freeimage | Ubuntu | trusty/esm | * |