#VU112999 Out-of-bounds write in Libjxl - CVE-2024-11403
Published: July 16, 2025
Libjxl
Libjxl Project
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing JPEG images. A remote attacker can create a specially crafted file, trick the victim into opening it using the affected software, trigger an out-of-bounds write and execute arbitrary code on the target system.
Remediation
External links
- https://github.com/libjxl/libjxl/commit/9cc451b91b74ba470fd72bd48c121e9f33d24c99
- https://github.com/libjxl/libjxl/releases/tag/v0.7.2
- https://github.com/libjxl/libjxl/releases/tag/v0.11.1
- https://github.com/libjxl/libjxl/releases/tag/v0.10.4
- https://github.com/libjxl/libjxl/releases/tag/v0.9.4
- https://github.com/libjxl/libjxl/releases/tag/v0.8.4