{"id":"CVE-2026-3284","summary":"libvips extract.c vips_extract_area_build integer overflow","details":"A vulnerability was found in libvips 8.19.0. Impacted is the function vips_extract_area_build of the file libvips/conversion/extract.c. The manipulation of the argument extract_area results in integer overflow. The attack requires a local approach. The exploit has been made public and could be used. The patch is identified as 24795bb3d19d84f7b6f5ed86451ad556c8f2fe70. It is advisable to implement a patch to correct this issue.","modified":"2026-08-12T11:08:45.798877Z","published":"2026-02-27T03:02:09.219Z","database_specific":{"cna_assigner":"VulDB","cwe_ids":["CWE-189","CWE-190"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/3xxx/CVE-2026-3284.json","unresolved_ranges":[{"extracted_events":[{"introduced":"8.19.0"},{"last_affected":"8.19.0"}],"source":"AFFECTED_FIELD"}]},"references":[{"type":"WEB","url":"https://github.com/libvips/libvips/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/3xxx/CVE-2026-3284.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-3284"},{"type":"ADVISORY","url":"https://vuldb.com/?id.348013"},{"type":"ADVISORY","url":"https://vuldb.com/?submit.758864"},{"type":"REPORT","url":"https://github.com/libvips/libvips/issues/4879"},{"type":"REPORT","url":"https://github.com/libvips/libvips/issues/4879#issue-3944211794"},{"type":"REPORT","url":"https://vuldb.com/?ctiid.348013"},{"type":"FIX","url":"https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70"},{"type":"FIX","url":"https://github.com/libvips/libvips/pull/4887"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/libvips/libvips","events":[{"introduced":"0"},{"fixed":"24795bb3d19d84f7b6f5ed86451ad556c8f2fe70"}],"database_specific":{"source":"REFERENCES"}}],"versions":["v8.18.0","v8.18.0-rc3","v8.18.0-rc2","v8.18.0-rc1","v8.18.0-alpha2","v8.18.0-alpha1","v8.17.0-rc1","v8.17.0","v8.17.0-test4","v8.17.0-test3","v8.17.0-test2","v8.17.0-test1","v8.16.0","v8.16.0-rc2","v8.16.0-rc1","v8.15.0","v8.15.0-rc2","v8.14.0","v8.14.0-rc1","v8.13.0","v8.13.0-rc2","v8.13.0-rc1","v8.13.0-pre1","v8.12.0","v8.12.0-rc1","v8.11.0","v8.11","v8.11.0-rc1","v8.10.6-beta2","v8.10.0","v8.10.0-rc2","v8.10.0-rc1","v8.10.0-beta2","v8.10.0-beta1","v8.9.0","v8.9.0-rc4","v8.9.0-rc3","v8.9.0-rc2","v8.9.0-rc1","v8.9.0-beta2","v8.9.0-beta1","v8.9.0-alpha1","v8.8.0-rc3","v8.8.0","v8.8.0-rc2","v8.8.0-rc1","v8.7.0","v8.7.0-rc3","v8.7.0-rc2","v8.7.0-rc1","v8.7.0-alpha2","v8.6.0","v8.6.0-beta2","v8.6.0-beta1","v8.6.0-alpha2","v8.6.0-alpha1","v8.5.3","v8.5.2","v8.5.1","v8.3.0","v8.2.2","v8.1","v8.0-beta","v7.28.0"],"database_specific":{"vanir_signatures":[{"deprecated":false,"digest":{"function_hash":"285251679684353671952965590740815848739","length":1004},"id":"CVE-2026-3284-7a2691d3","signature_type":"Function","signature_version":"v1","source":"https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70","target":{"file":"libvips/conversion/extract.c","function":"vips_extract_area_build"}},{"digest":{"line_hashes":["193071816873117715779369215209029594946","250274461046386427014988688974409676346","175836217097941956702606041183311745872","49981623033314210985944028499907788884","339233191718191705884968584087862497623","194977356878882855530483441890816731424","159947729043730519346083966848637883422","261927180342059039256529976722163682495","173397610903900765118268591886807041346"],"threshold":0.9},"id":"CVE-2026-3284-801b8f7f","signature_type":"Line","signature_version":"v1","source":"https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70","target":{"file":"libvips/conversion/extract.c"},"deprecated":false},{"source":"https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70","target":{"file":"libvips/conversion/extract.c","function":"vips_extract_band_build"},"deprecated":false,"digest":{"function_hash":"260056398726943000628468038482196278664","length":587},"id":"CVE-2026-3284-b22eb3ff","signature_type":"Function","signature_version":"v1"}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-3284.json","vanir_signatures_modified":"2026-08-12T11:08:45Z"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P"}]}