Decoding a paletted BMP file with an out-of-range palette index results in a panic when accessing pixels in the invalid image.
Metrics
Affected Vendors & Products
References
History
Sat, 30 May 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Golang
Golang image |
|
| Vendors & Products |
Golang
Golang image |
Fri, 29 May 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 |
Fri, 29 May 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 |
Fri, 29 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 29 May 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Decoding a paletted BMP file with an out-of-range palette index results in a panic when accessing pixels in the invalid image. | |
| Title | Panic when reading out of bound palette index in golang.org/x/image/bmp | |
| References |
|
Status: PUBLISHED
Assigner: Go
Published: 2026-05-29T18:36:28.283Z
Updated: 2026-05-29T19:51:38.147Z
Reserved: 2026-04-28T00:21:12.791Z
Link: CVE-2026-42500
Updated: 2026-05-29T19:51:33.444Z
Status : Deferred
Published: 2026-05-29T20:16:23.627
Modified: 2026-06-01T18:16:02.273
Link: CVE-2026-42500
No data.