← Zurück zur CVE-Suche

CVE-2026-4367

libXpm

Beschreibung

A flaw was found in libXpm. A local user with low privileges could exploit an Out-of-Bounds Read vulnerability in the `xpmNextWord()` function by processing a specially crafted or very small XPM (X PixMap) image file. This improper validation of file boundaries can cause an internal pointer to read beyond the file-s end, leading to application crashes and Denial of Service conditions.

CVSS 5.5EPSS 0.129%Risiko 0.56
Quelle öffnen
Veröffentlicht
2026-06-16 19:16:59
Betroffene Versionen
unknown
Typ
Bibliothek
Zuletzt geändert
2026-07-28 10:16:48
Vektor
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H