A flaw was found in libXpm. A local user with low privileges could exploit an Out-of-Bounds Read vulnerability in the `xpmNextWord()` function by processing a specially crafted or very small XPM (X PixMap) image file. This improper validation of file boundaries can cause an internal pointer to read beyond the file's end, leading to application crashes and Denial of Service conditions.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade libxpm | Jun 18, 2026 | Jun 16, 2026 |
| Amazon Linux Ami 2 | — | Upgrade libXpm-develUpgrade libXpm-debuginfoUpgrade libXpm | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade libXpm-devel-debuginfoUpgrade libXpm-debuginfoUpgrade libXpmUpgrade libXpm-debugsourceUpgrade libXpm-devel | Jun 17, 2026 | Jun 16, 2026 |
| Debian | — | Upgrade libxpm | Jul 23, 2026 | Jul 23, 2026 |
| Freebsd | — | Upgrade libXpm | Apr 29, 2026 | Apr 27, 2026 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Apr 21, 2026 |
| Suse | — | Upgrade libXpm-develUpgrade libXpm4Upgrade libXpm-tools | Jun 17, 2026 | Jun 17, 2026 |
| Ubuntu | — | Upgrade libxpm4Upgrade xpmutils | Jul 26, 2026 | Jul 23, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub