CVE-2017-8326: Entropymine Imageworsener

High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.

libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot be represented in type int" undefined behavior issues, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image, related to imagew-bmp.c and imagew-util.c.

Affected products

Published 2017-04-29. Last modified 2026-06-17.