← Retour à la recherche de CVE

CVE-2026-4367

libXpm

Description

A flaw was found in libXpm. A local user with low privileges could exploit an Out-of-Bounds Read vulnerability in the `xpmNextWord()` function by processing a specially crafted or very small XPM (X PixMap) image file. This improper validation of file boundaries can cause an internal pointer to read beyond the file-s end, leading to application crashes and Denial of Service conditions.

CVSS 5.5EPSS 0.129%Risque 0.56
Voir la source
Publication
2026-06-16 19:16:59
Versions concernées
unknown
Type
Bibliothèque
Dernière modification
2026-07-28 10:16:48
Vecteur
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H