PT-2026-90975 · Git · Embedded-Graphics
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X |
Name of the Vulnerable Software and Affected Versions
embedded-graphics versions prior to 0.8.3
Description
An integer overflow occurs in the
ImageRaw::new/bytes per row function within the src/image/image raw.rs file when running on 32-bit systems. This issue allows for remote exploitation.Recommendations
Update to a version newer than 0.8.2.
As a temporary mitigation, restrict the use of the
ImageRaw::new/bytes per row function.Exploit
Fix
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Embedded-Graphics