CVE-2023-40032

CVSS V2 None CVSS V3 None
Description
libvips is a demand-driven, horizontally threaded image processing library. A specially crafted SVG input can cause libvips versions 8.14.3 or earlier to segfault when attempting to parse a malformed UTF-8 character. Users should upgrade to libvips version 8.14.4 (or later) when processing untrusted input.
Overview
  • CVE ID
  • CVE-2023-40032
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-09-11T18:34:59.025Z
  • Last Modified Date
  • 2023-09-11T18:34:59.025Z
History
Created Old Value New Value Data Type Notes
2024-06-25 02:28:25 Added to TrackCVE