Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2025-27795
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2025-27795
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-27795.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-27795
Downstream
DEBIAN-CVE-2025-27795
DSA-5905-1
OESA-2025-1506
SUSE-SU-2025:1129-1
UBUNTU-CVE-2025-27795
USN-7433-1
openSUSE-SU-2025:14949-1
Related
MGASA-2025-0132
SUSE-SU-2025:1129-1
openSUSE-SU-2025:14949-1
Published
2025-03-07T06:15:33Z
Modified
2025-08-09T19:01:27Z
Summary
[none]
Details
ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits.
References
https://github.com/libjxl/libjxl/issues/3792#issuecomment-2330978387
https://github.com/libjxl/libjxl/issues/3793#issuecomment-2334843280
http://www.graphicsmagick.org/NEWS.html
https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/9bbae7314e3c3b19b830591010ed90bb136b9c42
https://issues.oss-fuzz.com/issues/42536330#comment6
Affected packages
CVE-2025-27795 - OSV