← Back to browse · API

CVE-2019-5133

Severity
CRITICAL
CVSS
9.8
EPSS
0.03203
Risk score
40.32
CISA KEV
No
PoC
No
Published
2019-12-03
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2019-14738, GHSA-4M76-JXV9-F5PC
Products
n/a:Accusoft Accusoft ImageGear 19.3.0
Sources
euvd EUVD-2019-14738

Description

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll BMP parser of the ImageGear 19.3.0 library. A specially crafted BMP file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

References