Severe libjxl Vulnerability in Ubuntu Leads to Potential Denial of Service

Severe libjxl Vulnerability in Ubuntu Leads to Potential Denial of Service

First seen 8 Jun 2026, 21:23 UTC UbuntuLinuxsecurity 78% similarity 70.5

Article Content

Browse articles
ThreatCluster

A vulnerability in the libjxl library affects Ubuntu 26.04 LTS and 25.10, allowing attackers to crash the software or execute arbitrary code through specially crafted PBM images. Discovered on June 8, 2026, the flaw could lead to denial of service attacks. Users are advised to update their systems to mitigate the risk. The affected package versions include libjxl-tools 0.11.1-6ubuntu4.2 for Ubuntu 26.04 LTS and libjxl-tools 0.11.1-6ubuntu1.2 for Ubuntu 25.10. Ubuntu Pro offers ten-year security coverage for over 25,000 packages, which includes this update. A standard system update will implement the necessary changes to address this vulnerability.

Key Points: • libjxl vulnerability affects Ubuntu 26.04 LTS and 25.10, allowing potential crashes. • Attackers can exploit crafted PBM images to execute arbitrary code or cause denial of service. • Users are urged to update to specific package versions to mitigate the vulnerability.

ThreatCluster AI

Timeline

2026-06-08
libjxl vulnerability discovered
A flaw in libjxl allows crashing or arbitrary code execution via crafted PBM images, affecting Ubuntu 26.04 LTS and 25.10.
Ubuntu
2026-06-08
Security notice published
Ubuntu issued USN-8397-1 detailing the libjxl vulnerability and providing update instructions.
Linuxsecurity

Community

Browse all →

Tracked Entities in This Story