{"api_version":"1","generated_at":"2026-07-24T18:51:48+00:00","cve":"CVE-2022-1325","urls":{"html":"https://cve.report/CVE-2022-1325","api":"https://cve.report/api/cve/CVE-2022-1325.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2022-1325","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2022-1325"},"summary":{"title":"CVE-2022-1325","description":"A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is possible to trick the application into allocating huge buffer sizes like 64 Gigabyte upon reading the file from disk or from a virtual buffer.","state":"PUBLIC","assigner":"secalert@redhat.com","published_at":"2022-08-31 16:15:00","updated_at":"2022-09-07 16:23:00"},"problem_types":["CWE-770"],"metrics":[],"references":[{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2074549","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2074549","refsource":"MISC","tags":[],"title":"2074549 – (CVE-2022-1325) CVE-2022-1325 CImg: Denial of service via RAM exhaustion in _load_bmp","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://github.com/GreycLab/CImg/issues/343","name":"https://github.com/GreycLab/CImg/issues/343","refsource":"MISC","tags":[],"title":"Denial of service via RAM exhaustion in _load_bmp · Issue #343 · GreycLab/CImg · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://github.com/GreycLab/CImg/commit/619cb58dd90b4e03ac68286c70ed98acbefd1c90","name":"https://github.com/GreycLab/CImg/commit/619cb58dd90b4e03ac68286c70ed98acbefd1c90","refsource":"MISC","tags":[],"title":"CImg<>::load_bmp() and CImg<>::load_pandore(): Check that dimensions … · GreycLab/CImg@619cb58 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://github.com/GreycLab/CImg/pull/348","name":"https://github.com/GreycLab/CImg/pull/348","refsource":"MISC","tags":[],"title":"add global hardening against RAM exhaustions in safe_size by 7unn3l · Pull Request #348 · GreycLab/CImg · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://huntr.dev/bounties/a5e4fc45-8f14-4dd1-811b-740fc50c95d2/","name":"https://huntr.dev/bounties/a5e4fc45-8f14-4dd1-811b-740fc50c95d2/","refsource":"MISC","tags":[],"title":"unchecked size in _load_bmp leads to RAM exhaustion in version 3.10  vulnerability found in cimg","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://access.redhat.com/security/cve/CVE-2022-1325","name":"https://access.redhat.com/security/cve/CVE-2022-1325","refsource":"MISC","tags":[],"title":"Red Hat Customer Portal - Access to 24x7 support and knowledge","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2022-1325","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2022-1325","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2022","cve_id":"1325","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"cimg","cpe5":"cimg","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[{"cve":"CVE-2022-1325","qid":"182019","title":"Debian Security Update for cimg (CVE-2022-1325)"}]},"source_records":{"cve_program":{"data_version":"4.0","data_type":"CVE","data_format":"MITRE","CVE_data_meta":{"ID":"CVE-2022-1325","ASSIGNER":"secalert@redhat.com","STATE":"PUBLIC"},"description":{"description_data":[{"lang":"eng","value":"A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is possible to trick the application into allocating huge buffer sizes like 64 Gigabyte upon reading the file from disk or from a virtual buffer."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-400 - Uncontrolled Resource Consumption","cweId":"CWE-400"}]}]},"affects":{"vendor":{"vendor_data":[{"vendor_name":"n/a","product":{"product_data":[{"product_name":"Clmg","version":{"version_data":[{"version_affected":"=","version_value":"Fixed in v3.1.0"}]}}]}}]}},"references":{"reference_data":[{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2074549","refsource":"MISC","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2074549"},{"url":"https://huntr.dev/bounties/a5e4fc45-8f14-4dd1-811b-740fc50c95d2/","refsource":"MISC","name":"https://huntr.dev/bounties/a5e4fc45-8f14-4dd1-811b-740fc50c95d2/"},{"url":"https://github.com/GreycLab/CImg/issues/343","refsource":"MISC","name":"https://github.com/GreycLab/CImg/issues/343"},{"url":"https://github.com/GreycLab/CImg/pull/348","refsource":"MISC","name":"https://github.com/GreycLab/CImg/pull/348"},{"url":"https://github.com/GreycLab/CImg/commit/619cb58dd90b4e03ac68286c70ed98acbefd1c90","refsource":"MISC","name":"https://github.com/GreycLab/CImg/commit/619cb58dd90b4e03ac68286c70ed98acbefd1c90"},{"url":"https://access.redhat.com/security/cve/CVE-2022-1325","refsource":"MISC","name":"https://access.redhat.com/security/cve/CVE-2022-1325"}]}},"nvd":{"publishedDate":"2022-08-31 16:15:00","lastModifiedDate":"2022-09-07 16:23:00","problem_types":["CWE-770"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"},"exploitabilityScore":1.8,"impactScore":3.6}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:cimg:cimg:*:*:*:*:*:*:*:*","versionEndExcluding":"3.1.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":null,"notes":[]}}}