← Vulnerability feed

Vulnerability record · CVE-2026-3283 · published 27 February 2026

CVE-2026-3283: Libvips memory buffer overflow vulnerability

Libvips · Libvips

A vulnerability has been found in libvips 8.19.0. This issue affects the function vips_extract_band_build of the file libvips/conversion/extract.c. The manipulation of the argument extract_band leads to out-of-bounds read. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 24795bb3d19d84f7b6f5ed86451ad556c8f2fe70. To fix this issue, it is recommended to deploy a patch.

1.9 CVSS 4.0 Low EPSS 0.20% · top 91.1% CWE-119 · Memory buffer overflowCWE-125 · Out-of-bounds read
1.9CVSS 4.0 base score, v2 1.7
0.20%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

A vulnerability has been found in libvips 8.19.0. This issue affects the function vips_extract_band_build of the file libvips/conversion/extract.c. The manipulation of the argument extract_band leads to out-of-bounds read. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 24795bb3d19d84f7b6f5ed86451ad556c8f2fe70. To fix this issue, it is recommended to deploy a patch.

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-3283 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2019-17534Libvips use after free vulnerabilityvips_foreign_load_gif_scan_image in foreign/gifload.c in libvips before 8.8.2 tries to access a color map before a DGifGetImageDesc call, leading to …EPSS 2.4%8.5CVE-2025-29769Libvips heap-based buffer overflow vulnerabilitylibvips is a demand-driven, horizontally threaded image processing library. The heifsave operation could incorrectly determine the presence of an alp…EPSS 0.28%7.5CVE-2018-7998Libvips race condition vulnerabilityIn libvips before 8.6.3, a NULL function pointer dereference vulnerability was found in the vips_region_generate function in region.c, which allows r…EPSS 1.8%7.0CVE-2026-35591Libvips heap-based buffer overflow vulnerabilitylibvips is a fast image processing library with low memory needs. The `tiffload` operation in libvips versions before and including 8.18.1 could inco…EPSS 0.18%7.0CVE-2026-33327Libvips integer overflow vulnerabilitylibvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly …EPSS 0.18%6.8CVE-2026-35590Libvips heap-based buffer overflow vulnerabilitylibvips is a fast image processing library with low memory needs. The EXIF decoder within libvips versions before and including 8.18.1 was not verify…EPSS 0.15%6.8CVE-2026-33328Libvips integer overflow vulnerabilitylibvips is a fast image processing library with low memory needs. On 32-bit systems in versions before and including 8.18.0, the `gifload` operation …EPSS 0.15%6.5CVE-2021-27847Libvips divide by zero vulnerabilityDivision-By-Zero vulnerability in Libvips 8.10.5 in the function vips_eye_point, eye.c#L83, and function vips_mask_point, mask.c#L85.EPSS 0.98%

Source: NIST National Vulnerability Database (record CVE-2026-3283), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.