VDB

JLSEC-2026-286

JLSEC-2026-286 PUBLISHED

A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker to trigger an out-of-bounds read error and read the contents of memory on the system.

Affected Products

VendorProductVersions
JuliaXorg_libXpm_jll0, 0

Timeline

  • Apr 28, 2026 CVE Published
  • Apr 28, 2026 CVE Updated
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
Open in Interactive Console →
$ Console Community · 100/wk Open console ›