Imager · Imager · CVE-2024-53901
Name of the Vulnerable Software and Affected Versions:
Imager package versions prior to 1.025
Description:
The issue is a heap-based buffer overflow that can lead to denial of service or possibly other unspecified impacts when the `trim()` method is called on a crafted input image.
Recommendations:
For versions prior to 1.025, update to version 1.025 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the `trim()` method on untrusted input images until the update is applied.