VYPR

Sail

by SAIL

CVEs (9)

  • CVE-2026-27168HigFeb 21, 2026
    risk 0.57cvss 8.8epss 0.00

    SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. All versions are vulnerable to Heap-based Buffer Overflow through the XWD parser's use of the bytes_per_line value. The value os read directly from the file as…

  • CVE-2025-53510HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the PSD Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .psd file, an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will cause…

  • CVE-2025-53085HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .psd file, a heap-based buffer overflow can occur which allows for remote code execution. An…

  • CVE-2025-52930HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An…

  • CVE-2025-52456HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the WebP Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .webp animation an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will…

  • CVE-2025-50129HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .tga file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker…

  • CVE-2025-46407HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the BMPv3 Palette Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .bmp file, an integer overflow can be made to occur which will cause a heap-based buffer to overflow when reading the…

  • CVE-2025-35984HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .pcx file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker…

  • CVE-2025-32468HigAug 25, 2025
    risk 0.57cvss 8.8epss 0.01

    A memory corruption vulnerability exists in the BMPv3 Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .bmp file, an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will…