CVE-2026-90596 | embedded-graphics up to 0.8.2 on 32-bit src/image/image_raw.rs new/bytes_per_row integer overflow (Issue 820)

SecurityVulns

A vulnerability was found in embedded-graphics up to 0.8.2 on 32-bit. It has been classified as critical. Impacted is the function ImageRaw::new/bytes_per_row of the file src/image/image_raw.rs. This manipulation causes integer overflow.

This vulnerability is tracked as CVE-2026-90596. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.

The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More