Junglewise Threat Intelligence

CVE-2026-52834: tirr-c jxl-grid integer overflow in AlignedGrid

CVE-2026-52834 · Severity: high · CVSS 7.3 · Published 2026-07-02

Vendors: crates.io.

Executive brief

A vulnerability exists in the jxl-grid library, which is used for processing JPEG XL images. On 32-bit systems, a specially crafted image can cause the software to miscalculate memory requirements, leading to memory corruption. This could allow an attacker to crash the application or potentially execute unauthorized code on the affected system.

Technical details

The vulnerability is caused by an integer overflow in AlignedGrid::with_alloc_tracker when calculating the product of image dimensions (width * height) on 32-bit platforms. Because this calculation is unchecked, it can result in a small memory allocation for a logically large image. An attacker can trigger this by providing a crafted JPEG XL bitstream with either a large actual frame or a large canvas with a tiny cropped frame. This leads to a heap-based buffer overflow (CWE-122) during rendering when the software attempts to write to the undersized buffer. The issue is fixed in version 0.6.2.

Affected products

  • tirr-c/jxl-oxide jxl-grid <= 0.6.1

Timeline

  • 2026-05-29: disclosed
  • 2026-05-29: advisory
  • 2026-07-02: other: GitHub Advisory reviewed

References