An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read in the exif handler. We recommend upgrading to version 0.8.1 or past commit  https://github.com/libjxl/libjxl/pull/2101/commits/d95b050c1822a5b1ede9e0dc937e43fca1b10159 https://github.com/libjxl/libjxl/pull/2101/commits/d95b050c1822a5b1ede9e0dc937e43fca1b10159
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Google

Published: 2023-04-11T13:22:06.779Z

Updated: 2023-04-11T13:22:06.779Z

Reserved: 2023-02-02T11:18:15.223Z


Link: CVE-2023-0645

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-04-11T14:15:07.590

Modified: 2023-04-18T18:27:12.403


Link: CVE-2023-0645

JSON object: View

cve-icon Redhat Information

No data.

CWE