CVE-2025-27795 Information
Mar 08, 2025
cve
Description
ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits.
Reference
http://www.graphicsmagick.org/NEWS.html https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/9bbae7314e3c3b19b830591010ed90bb136b9c42 https://github.com/libjxl/libjxl/issues/3792#issuecomment-2330978387 https://github.com/libjxl/libjxl/issues/3793#issuecomment-2334843280 https://issues.oss-fuzz.com/issues/42536330#comment6
Share on: