mediumVulnerability
GHSA-qg8r-f7x3-25f7
A bounds check was performed in floating points before a cast to the index passed to an unchecked access function. This checked considered `NaN` cases improperly, causing them to succeed the check instead of failing it. The floating point coordinate is under caller control by passing a selected projection matrix. Carefully controlling the coordinates of an image with no data and one non-zero dimension provides an arbitrary read primitive in the first 32-bits of address space with a Bilinear sampling method. Using bicubic sampling can result in a read of a few bytes beyond an allocation. Other out-of-bounds reads may be possible.
Properties
- ghsa_id
- GHSA-qg8r-f7x3-25f7
- severity
- medium
- summary
- imageproc: Out-of-bounds read via NaN coordinates in bilinear/bicubic sampling
- cve_id
- GHSA-qg8r-f7x3-25f7
- is_ghsa_only
- true
- ghsa_published
- 2026-05-07T03:10:13Z
- source_url
- https://github.com/advisories/GHSA-qg8r-f7x3-25f7
- ghsa_updated
- 2026-05-07T03:10:15Z
Related Entities (4)
REPORTED_BY (1)
→[Source]GitHub Advisory Database
VULNERABLE_TO (1)
←[Software]rust/imageproc
AFFECTS (1)
→[Software]rust/imageproc
HAS_WEAKNESS (1)
→[Weakness]Integer Overflow or Wraparound
Explore deeper with Ninja Signal's threat intelligence graph