CVE-2026-52584

Publication date 17 July 2026

Last updated 7 August 2026


Ubuntu priority

Cvss 3 Severity Score

7.1 · High

Score breakdown

Description

Buffer Overflow vulnerability in libjxl v.0.11.2 and before allows a local attacker to obtain sensitive information via the DecodeImageAPNG function

Status

Package Ubuntu Release Status
jpeg-xl 26.04 LTS resolute
Needs evaluation
24.04 LTS noble
Needs evaluation
22.04 LTS jammy Not in release

Severity score breakdown

CVSS version: CVSS v3.0

Base score 7.1 · High

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H


Access our resources on patching vulnerabilities