CVE-2026-27168Disclosure(sail / sail)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. All versions are vulnerable to Heap-based Buffer Overflow through the XWD parser's use of the bytes_per_line value. The value os read directly from the file as the read size in io->strict_read(), and is never compared to the actual size of the destination buffer. An attacker can provide an XWD file with an arbitrarily large bytes_per_line, causing a massive write operation beyond the buffer heap allocated for the image pixels. The issue did not have a fix at the time of publication.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-122

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sail

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 1 mentions (2026-02-21); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
sail

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-21: 1Mentions · 2026-02-22: 1Mentions · 2026-02-24: 1Technical Details · 2026-02-21: 1Technical Details · 2026-02-22: 1Technical Details · 2026-02-24: 102-2102-2202-24
Signal classification1 categories
Disclosure
3100.0%
Referenced assets4 URLs
Full discourse3 posts
  • PulsePatch.io@pulsepatchio
    Disclosure

    `SAIL` image library is vulnerable to a Heap-based Buffer Overflow (UBUNTU-CVE-2026-27168) via its XWD parser. Processing malicious XWD files can lead to crashes or RCE. Monitor for updates. #SAIL #infosec #bufferoverflow https://www.pulsepatch.io/posts/ubuntu-cve-2026-27168-sail-heap-overflow

    Post summary

    The SAIL image library suffers from a heap-based buffer overflow in its XWD parser that could cause crashes or remote code execution; users should watch for vendor updates.

    00000188
    1 followersView on X
  • PulsePatch.io@pulsepatchio
    Disclosure

    A heap-based buffer overflow (CVE-2026-27168) affects `Happyseafox Sail` in `Sail-codecs-xwd`. Impact includes potential code execution or DoS when processing crafted XWD files. Monitor for updates. #infosec #vulnerability #bufferoverflow https://www.pulsepatch.io/posts/cve-2026-27168-happyseafox-sail-buffer-overflow

    Post summary

    A heap-based buffer overflow in Happyseafox Sail's Sail-codecs-xwd can lead to code execution or DoS when processing crafted XWD files; no PoC, exploit, or patch details are provided.

    0000048
    1 followersView on X
  • CVETodo@CveTodo
    Disclosure

    **References:** - [Sail Security Advisory](https://github.com/HappySeaFox/sail/security/advisories/GHSA-3g38-x2pj-mv55) #Cybersecurity #CVE #HighSeverity #SecurityAlert #RemoteCodeExecution #DDoS #BufferOverflow https://cvetodo.com/cve/CVE-2026-27168

    Post summary

    The post links to a high‑severity CVE (CVE‑2026‑27168) via a Sail security advisory, pointing to potential remote code execution, DDoS, and buffer overflow vulnerabilities, but offers no PoC, exploit code, active attack reports, patches, or false‑positive claims.

    0000046
    20 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appsailsail---

Explore more