Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33327

Опубликовано: 20 июл. 2026
Источник: debian
EPSS Низкий

Описание

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer overflow and a subsequent heap-based buffer overflow. This has been patched in version 8.18.1.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
vipsfixed8.18.1-1package

Примечания

  • https://github.com/libvips/libvips/security/advisories/GHSA-2fcj-gj27-279x

  • https://github.com/libvips/libvips/pull/4934

  • Fixed by: https://github.com/libvips/libvips/commit/61e71c13328ed72d0a530dffc19b9b225072bdf9 (v8.18.1)

EPSS

Процентиль: 3%
0.00132
Низкий

Связанные уязвимости

ubuntu
30 дней назад

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer overflow and a subsequent heap-based buffer overflow. This has been patched in version 8.18.1.

CVSS3: 7.3
redhat
30 дней назад

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer overflow and a subsequent heap-based buffer overflow. This has been patched in version 8.18.1.

nvd
30 дней назад

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer overflow and a subsequent heap-based buffer overflow. This has been patched in version 8.18.1.

EPSS

Процентиль: 3%
0.00132
Низкий