CVE-2022-4988
HIGH EPSS 20.7%
Published May 11, 20261mo ago · Modified Jun 17, 20262w ago
7.3 CVSS 3.1
Published May 11, 2026 1mo ago
Last Modified Jun 17, 2026 2w ago
Description
Alien::FreeImage versions through 1.001 for Perl contains several vulnerable libraries. Alien::FreeImage contains version 3.17.0 of the FreeImage library from 2017, which has known vulnerabilities such as CVE-2015-0852 and CVE-2025-65803. The library embeds other images libraries that also have known vulnerabilities.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality Low
Integrity Low
Availability Low
Threat Intelligence
EPSS Exploit Probability
20.7% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
References 6
- freeimage.sourceforge.io https://freeimage.sourceforge.io/
- github.com https://github.com/kmx/alien-freeimage/issues/4
- github.com https://github.com/kmx/alien-freeimage/issues/5
- metacpan.org https://metacpan.org/release/KMX/Alien-FreeImage-1.001/source/src/Source
- nvd.nist.gov https://nvd.nist.gov/vuln/detail/CVE-2015-0852
- nvd.nist.gov https://nvd.nist.gov/vuln/detail/CVE-2025-65803
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.