THREAT OPS › Threat News › [NVD] CVE-2026-39919 (CRITICAL 9.8) — Ghostscript before 10.08.0 contains a heap-based buffer overflow vulnerability in the JPEG 2000 output adapter (base/sjpx_openjpeg.c) that allows attackers to cause memory corruption by supplying a crafted PDF containing a JPEG 2000 image with mismatched component subsampling fac
[NVD] CVE-2026-39919 (CRITICAL 9.8) — Ghostscript before 10.08.0 contains a heap-based buffer overflow vulnerability in the JPEG 2000 output adapter (base/sjpx_openjpeg.c) that allows attackers to cause memory corruption by supplying a crafted PDF containing a JPEG 2000 image with mismatched component subsampling fac
CVE-2026-39919 CVSS: 9.8 CRITICAL Published: 2026-09-15T15:17:14.723
Ghostscript before 10.08.0 contains a heap-based buffer overflow vulnerability in the JPEG 2000 output adapter (base/sjpx_openjpeg.c) that allows attackers to cause memory corruption by supplying a crafted PDF containing a JPEG 2000 image with mismatched component subsampling factors. When image components declare different subs
Indicators of compromise
- CVE-2026-39919cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-39919