Integer Overflow Vulnerability in libvips Image Processing Library
CVE-2026-33328
6.8MEDIUM
What is CVE-2026-33328?
libvips, a widely used image processing library, is susceptible to an integer overflow vulnerability during the gifload operation on 32-bit systems. This flaw arises from incorrect dimension determination, leading to potential miscalculation of memory allocation and could allow for unexpected behavior or denial of service. Fortunately, this vulnerability has been addressed in version 8.18.1, ensuring enhanced security for users.
Affected Version(s)
libvips <= 8.18.0
