Vulnerabilities (CVE)

Filtered by vendor Redhat Subscribe
Filtered by product Gatekeeper
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-71319 2 Image-size, Redhat 5 Image-size, Discovery, Enterprise Linux and 2 more 2026-07-24 N/A 7.5 HIGH
image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by supplying a specially crafted image buffer with a zero-valued size field in a recognized box-type. Attackers can trigger an infinite loop in the JXL or HEIF image parsers by providing a crafted image containing a box with a size of zero, causing the offset to never advance and permanently hanging the application.