CVE-2017-16663: SAM2P Project SAM2P
Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.
In sam2p 0.49.4, there are integer overflows (with resultant heap-based buffer overflows) in input-bmp.ci in the function ReadImage, because "width * height" multiplications occur unsafely.
Affected products
- SAM2P Project SAM2P: version 0.49.4 only
Published 2017-11-08. Last modified 2026-06-17.