Intel

AIKIDO-2026-338423

strukturag.libheif is vulnerable to Denial of Service (DoS)

Denial of Service (DoS)GHSA-xrp2-63fq-jm8q Published 4 days ago

87

High Risk

This Affects:

C++strukturag.libheif
1.16.0 - 1.23.3
Fixed in 1.23.4
Are you affected? Scan for Free

TL;DR

libheif caps only the per entry reference count when parsing iref boxes and validates reference cycles with an unbounded, non-memoized recursive walk. A HEIF file containing a long linear chain of tens of thousands of iref entries exhausts the stack while the file is opened, before any decoding occurs. This crashes any application that opens the file. The fix caps the total number of iref entries against the item limit and bounds the cycle check.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

strukturag.libheif is vulnerable to Denial of Service (DoS) in versions 1.16.0 - 1.23.3.

How to fix this

Upgrade the strukturag.libheif library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform