Beveiligingsadvies

CVE-2025-12474

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-11 15:27:24
Laatst bijgewerkt 2026-02-11 21:41:40
Toegewezen door Google
CVSS-score 2.3
Status PUBLISHED

Beschrijving

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An incorrect optimization causes the decoder to omit populating those areas.