CVE-2019-13568: Cimg

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

CImg through 2.6.7 has a heap-based buffer overflow in _load_bmp in CImg.h because of erroneous memory allocation for a malformed BMP image.

Affected products

  • Cimg Cimg: up to and including 2.6.7

Published 2019-07-31. Last modified 2026-06-17.