← Back to browse · API

CVE-2019-5076

Severity
CRITICAL
CVSS
9.8
EPSS
0.03687
Risk score
40.49
CISA KEV
No
PoC
No
Published
2019-12-03
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2019-14681, GHSA-FXVH-GV5W-RX6C
Products
n/a:Accusoft Accusoft ImageGear 19.3.0
Sources
euvd EUVD-2019-14681

Description

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG header-parser of the Accusoft ImageGear 19.3.0 library. A specially crafted PNG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the viction to trigger the vulnerability.

References