SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-21096

CRITICAL · CVSS 9.8 EPSS 0.46%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in the JPEG decoder of libimagecodec.quram.so prior to the SMR Sep-2026 Release 1 allows remote attackers to execute arbitrary code, potentially compromising affected systems. Organizations utilizing this library should prioritize patching to mitigate the risk of exploitation, given the critical severity rating and potential for remote code execution.

CVE
CVE-2026-21096
Severity
CRITICAL
CVSS
9.8
EPSS
0.46%

Original NVD Description

Heap-based buffer overflow in JPEG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Release 1 allows remote attackers to execute arbitrary code.

Related CVEs

Other vulnerabilities affecting the same vendor(s)