libjxl: Denial of Service A vulnerability has been found in libjxl which could result in denial of service. libjxl 2022-10-31 2022-10-31 856037 remote 0.7.0_pre20220825 0.7.0_pre20220825

libjxl is the JPEG XL image format reference implementation.

libjxl contains an unecessary assertion in jxl::LowMemoryRenderPipeline::Init.

An attacker can cause a denial of service of the libjxl process via a crafted input file.

There is no known workaround at this time.

All users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=media-libs/libjxl-0.7.0_pre20220825"
CVE-2022-34000 ajak ajak