CVE-2026-42500

Decoding a paletted BMP file with an out-of-range palette index results in a panic when accessing pixels in the invalid image.

medium 5.3 CVSS 3.1
Published: May 29, 2026
Modified: Jun 1, 2026

Description

Decoding a paletted BMP file with an out-of-range palette index results in a panic when accessing pixels in the invalid image.

References