CVE-2026-33328

Summary

libvips is a fast image processing library with low memory needs. On 32-bit systems in versions before and including 8.18.0, the gifload operation could incorrectly determine dimensions leading to an integer overflow. This has been patched in version 8.18.1.

Affected Software

VendorProductVersion RangeStatus
libvipslibvips<= 8.18.0affected

Weaknesses

  • CWE-190: CWE-190: Integer Overflow or Wraparound

References