jxl-grid
Activity
- Latest release
- 3mo ago
- Total releases
- 14
- Cadence
- ~2 months
- Last 12 months
- 1
Details
- License
- MIT OR Apache-2.0
- First release
- May 07, 2023
| Version | Released | |
|---|---|---|
0.6.2
unknown
|
0.6.2
unknown
Dependencies (1)
|
|
0.6.1
unknown
yanked
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.6.1
unknown
yanked
Dependencies (1)
|
|
0.6.0
unknown
yanked
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.6.0
unknown
yanked
Dependencies (1)
|
|
0.5.3
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.5.3
unknown
Dependencies (1)
|
|
0.5.2
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.5.2
unknown
Dependencies (1)
|
|
0.5.1
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.5.1
unknown
Dependencies (1)
|
|
0.5.0
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.5.0
unknown
Dependencies (1)
|
|
0.4.2
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.4.2
unknown
Dependencies (1)
|
|
0.4.1
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.4.1
unknown
Dependencies (1)
|
|
0.4.0
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.4.0
unknown
Dependencies (1)
|
|
0.3.0
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.3.0
unknown
Dependencies (1)
|
|
0.2.0
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.2.0
unknown
|
|
0.1.1
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.1.1
unknown
|
|
0.1.0
unknown
1 CVE
CVE-2026-52834
GHSA-5pmv-rx8r-wmv5
RUSTSEC-2026-0151
Jul 02, 2026
jxl-grid on 32-bit platforms has an out-of-bounds writes due to integer overflow
7.3
/ 10
High
Local
High
None
None
Changed
Low
Low
High
SummaryOn 32-bit platforms, decoding a crafted image may lead to out-of-bounds writes due to integer overflow in length calculation. Details & PoCThe test listed below fail under miri with command Or you can use Address Sanitizer, which ignores Rust-specific UB like aliasing but still flags out-of-bounds accesses:
The following tests should be appended to
This issue can be reachable through decoding a crafted image in two ways:
ImpactOn 32-bit platforms this can cause out-of-bounds writes with attacker-controlled data when decoding a crafted JPEG XL image. This could allow arbitrary code execution. Fixed in
0.6.2
References Updated Jul 02, 2026 · Source: OSV.dev |
0.1.0
unknown
|