Vulnerability Description
An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Freeimage Project | Freeimage | <= 3.18.0 |
Related Weaknesses (CWE)
References
- https://freeimage.sourceforge.io/download.htmlProduct
- https://gist.github.com/1mxml/cabd6d972557d9d992fe5f4f6ca1dd87ExploitIssue TrackingThird Party Advisory
FAQ
What is CVE-2025-65803?
CVE-2025-65803 is a vulnerability with a CVSS score of 6.5 (MEDIUM). An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.
How severe is CVE-2025-65803?
CVE-2025-65803 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-65803?
Check the references section above for vendor advisories and patch information. Affected products include: Freeimage Project Freeimage.