CVE-2026-14454

EUVD-2026-42226
Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed.

Imager mishandled large EXIF IFD entry count values, treating them as negative numbers.  This could lead to an attempt to allocate a block nearly the size of the address space, which fails and kills the process.

An attacker could craft an image with EXIF data that terminates a worker process.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
CPANSecCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 30.8%
Affected Products (NVD)
VendorProductVersion
tonycozimager
𝑥
< 1.033
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
tonycimager\
𝑥
< 1.33
CNA
Debian logo
Debian Releases
Debian Product
Codename
libimager-perl
bookworm
postponed
bullseye
postponed
forky
1.033+dfsg-1
fixed
sid
1.035+dfsg-1
fixed
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libimager-perl
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
questing
ignored
resolute
needs-triage