Heap Out of Bounds Write in Imager for Perl Affects Multi-Frame GIF Files
CVE-2026-8669

Currently unrated

Key Information:

Vendor

Tonyc

Status
Vendor
CVE Published:
15 May 2026

What is CVE-2026-8669?

The Imager library for Perl is susceptible to a heap out of bounds (OOB) write vulnerability when processing crafted multi-frame GIF files. The issue arises from the i_readgif_multi_low method in Imager::File::GIF, which improperly allocates a single per-row buffer. This could allow an attacker to exploit the vulnerability by manipulating the dimensions of the GIF images, subsequently leading to instability and potential software crashes.

Affected Version(s)

Imager 0 <= 1.030

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.