Back

MEDIUM

libvips matrixload.c vips_foreign_load_matrix_header memory corruption

Published Feb 25, 2026

Description

A flaw has been found in libvips up to 8.18.0. The affected element is the function vips_foreign_load_matrix_file_is_a/vips_foreign_load_matrix_header of the file libvips/foreign/matrixload.c. Executing a manipulation can lead to memory corruption. The attack needs to be launched locally. This patch is called d4ce337c76bff1b278d7085c3c4f4725e3aa6ece. A patch should be applied to remediate this issue.

Affected products

Remediation

No remediation recorded yet.

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Feb 25, 2026
Updated Feb 25, 2026
Reserved Feb 24, 2026
CISA Vulnrichment
Updated Feb 25, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner VulDB
Published Feb 25, 2026
Updated Feb 25, 2026
Exploited since n/a
EUVD-2026-8586