CVE-2020-21427: Freeimage Project Freeimage

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Buffer Overflow vulnerability in function LoadPixelDataRLE8 in PluginBMP.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary code and cause other impacts via crafted image file.

Affected products

Published 2023-08-22. Last modified 2026-06-17.