CVE-2026-102504

Source
https://cve.org/CVERecord?id=CVE-2026-102504
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-102504.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-102504
Aliases
  • GHSA-g549-r73g-x7x6
Downstream
Published
2026-10-01T13:11:38Z
Modified
2026-10-03T08:04:04Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
Imager versions before 1.037 for Perl exit the process reading a raw image with an out-of-range raw_datachannels value in i_readraw_wiol
Details

Imager versions before 1.037 for Perl exit the process reading a raw image with an out-of-range raw_datachannels value in i_readraw_wiol.

Nothing range-checks raw_datachannels. The line buffer is sized as the image width times the channel count with no overflow check, so a negative or very large count requests an excessive allocation. When it fails, Imager's allocator calls exit(3).

Passing an untrusted raw_datachannels value to Imager->read() triggers an uncatchable exit.

Database specific
{
    "cna_assigner":  "CPANSec",
    "cwe_ids":  [
        "CWE-190",
        "CWE-789"
    ],
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/102xxx/CVE-2026-102504.json",
    "unresolved_ranges":  [
        {
            "extracted_events":  [
                {
                    "fixed":  "1.037"
                }
            ],
            "source":  "AFFECTED_FIELD"
        },
        {
            "extracted_events":  [
                {
                    "fixed":  "1.037"
                }
            ],
            "source":  "DESCRIPTION"
        }
    ]
}
References

Affected packages

Git / github.com/tonycoz/imager

Affected ranges

Type
GIT
Repo
https://github.com/tonycoz/imager
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "source":  "REFERENCES"
}

Affected versions

Imager-0.*
Imager-0.49
Imager-0.51_01
Imager-0.51_02
Imager-0.52
Imager-0.53
Imager-0.55
Imager-0.58
Imager-0.59
Imager-0.60
Imager-0.61
Imager-0.63
Imager-0.65
Imager-0.71
Imager-0.72
Imager-0.75
Imager-0.76
Imager-0.77
Imager-0.78
Imager-0.79
Imager-0.80
Imager-0.81
Imager-0.82
Other
Imager-0_38
Imager-0_38pre9
v0.*
v0.82_01
v0.83
v0.84
v0.84_01
v0.84_02
v0.85
v0.85_01
v0.85_02
v0.86
v0.87
v0.88
v0.89
v0.90
v0.91
v0.92
v0.93
v0.94
v0.94_01
v0.94_02
v0.95
v0.96
v0.96_01
v0.96_02
v0.97
v0.98
v0.99
v0.99_01
v0.99_02
v1.*
v1.000
v1.001
v1.002
v1.003
v1.004
v1.004_001
v1.004_002
v1.004_003
v1.004_004
v1.005
v1.006
v1.007
v1.008
v1.009
v1.010
v1.011
v1.012
v1.013
v1.014
v1.015
v1.016
v1.017
v1.018
v1.019
v1.020
v1.021
v1.022
v1.023
v1.024
v1.025
v1.026
v1.027
v1.028
v1.029
v1.030
v1.031
v1.032
v1.033
v1.034
v1.035
v1.036

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-102504.json"
vanir_signatures
[
    {
        "deprecated":  false,
        "digest":  {
            "function_hash":  "207357776269421899668439933285550746615",
            "length":  1798
        },
        "id":  "CVE-2026-102504-a97d4103",
        "signature_type":  "Function",
        "signature_version":  "v1",
        "source":  "https://github.com/tonycoz/imager/commit/21b0df9eef1dffe1fdcd3706bfea9f1338031679",
        "target":  {
            "file":  "raw.c",
            "function":  "i_readraw_wiol"
        }
    },
    {
        "deprecated":  false,
        "digest":  {
            "line_hashes":  [
                "328463924939409605534426249642733758021",
                "168051128911534474624230533184760800684",
                "209000987498789475117558425190550600752",
                "282926231535019204558933664452818662303",
                "284683587321965164414290235504640101272",
                "266974199856811874455701382100747166544",
                "294332306576663194491368921611203116168",
                "262659248325399998910084395603953965701",
                "163830203813207452959878439816998971040"
            ],
            "threshold":  0.9
        },
        "id":  "CVE-2026-102504-eed4a9e3",
        "signature_type":  "Line",
        "signature_version":  "v1",
        "source":  "https://github.com/tonycoz/imager/commit/21b0df9eef1dffe1fdcd3706bfea9f1338031679",
        "target":  {
            "file":  "raw.c"
        }
    }
]
vanir_signatures_modified
"2026-10-03T08:04:04Z"