CVE-2017-8326: Entropymine Imageworsener
High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.
libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot be represented in type int" undefined behavior issues, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image, related to imagew-bmp.c and imagew-util.c.
Affected products
- Entropymine Imageworsener: up to and including 1.3.0
Published 2017-04-29. Last modified 2026-06-17.