top of page
perceptive_background_267k.jpg

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit 45d48d1f2e8e0d73e80bc1fd5…

Published:

17 april 2026 om 22:00:00

Alert date:

18 april 2026 om 04:01:18

Source:

nvd.nist.gov

Click to open the original link from this advisory

Supply Chain & Dependencies

The SAIL cross-platform image library contains a buffer overflow vulnerability in its TGA codec's RLE decoder. The vulnerability exists in the raw-packet path which lacks proper bounds checking, allowing attackers to write up to 496 bytes of controlled data past the end of a heap buffer. This asymmetric bounds check issue affects the TGA image format processing functionality. The vulnerability has been patched in commit 45d48d1f2e8e0d73e80bc1fd5310cb57f4547302. The issue could potentially allow heap corruption through malicious TGA image files.

Technical details

Mitigation steps:

Affected products:

SAIL

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page