Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-12474

Опубликовано: 11 фев. 2026
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 4.4

Описание

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An incorrect optimization causes the decoder to omit populating those areas.

РелизСтатусПримечание
devel

needs-triage

esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-apps/resolute

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
esm-infra-legacy/trusty

needs-triage

jammy

needs-triage

Показывать по

EPSS

Процентиль: 1%
0.00101
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.1
redhat
5 месяцев назад

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An incorrect optimization causes the decoder to omit populating those areas.

CVSS3: 4.4
nvd
5 месяцев назад

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An incorrect optimization causes the decoder to omit populating those areas.

CVSS3: 4.4
debian
5 месяцев назад

A specially-crafted file can cause libjxl's decoder to read pixel data ...

CVSS3: 4.4
github
5 месяцев назад

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An incorrect optimization causes the decoder to omit populating those areas.

suse-cvrf
3 месяца назад

Security update for libjxl

EPSS

Процентиль: 1%
0.00101
Низкий

4.4 Medium

CVSS3