CVE-2026-14454

CRITICAL

Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed

Title source: cna
STIX 2.1

Description

Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed. Imager mishandled large EXIF IFD entry count values, treating them as negative numbers. This could lead to an attempt to allocate a block nearly the size of the address space, which fails and kills the process. An attacker could craft an image with EXIF data that terminates a worker process.

Scores

CVSS v3 9.8
EPSS 0.0037
EPSS Percentile 30.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-196 CWE-789
Status published
Products (2)
TONYC/Imager < 1.033
tonycoz/imager < 1.033
Published Jul 08, 2026
Tracked Since Jul 08, 2026