CVE-2017-16663: SAM2P Project SAM2P

Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.

In sam2p 0.49.4, there are integer overflows (with resultant heap-based buffer overflows) in input-bmp.ci in the function ReadImage, because "width * height" multiplications occur unsafely.

Affected products

Published 2017-11-08. Last modified 2026-06-17.