PT-2026-79143 · Libvips · Libvips

CVE-2026-70653

·

Published

2026-08-20

·

Updated

2026-08-21

CVSS v4.0

4.8

Medium

VectorAV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions libvips versions prior to 8.18.3
Description The old-style Radiance RLE (Run-Length Encoding) decoder in libvips/foreign/radiance.c contains a flaw where it can process a repeat marker at the start of a scanline in the scanline read old() function. This allows the system to read q[-1] before any prior pixel exists. Consequently, a specially crafted Radiance image loaded through the VipsForeignLoadRad endpoint can disclose four bytes of adjacent heap data, which typically consists of other image data.
Recommendations Update to version 8.18.3.

Exploit

Fix

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-70653
GHSA-FH99-55JF-5HJ3

Affected Products

Libvips