Vulnerability CVE-2024-27929


Published: 2024-03-05

Description:
ImageSharp is a managed, cross-platform, 2D graphics library. A heap-use-after-free flaw was found in ImageSharp's InitializeImage() function of PngDecoderCore.cs file. This vulnerability is triggered when an attacker passes a specially crafted PNG image file to ImageSharp for conversion, potentially leading to information disclosure. This issue has been patched in version 3.1.3.

 References:
https://github.com/SixLabors/ImageSharp/security/advisories/GHSA-65x7-c272-7g7r

Copyright 2026, cxsecurity.com

 

Back to Top