Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.256
EPSS Ranking 95.9%