strukturag.libheif is vulnerable to Out-of-bounds Read
75
High Risk
libheif's Op_YCbCr420_to_RRGGBBaa color conversion reads Cb and Cr samples as 16-bit values using a width derived from the luma channel, without verifying that the chroma channels share that bit depth. A crafted uncompressed image with 16-bit luma but 8-bit chroma makes the converter perform two-byte reads from one-byte allocations, and the leaked adjacent heap bytes are written into the decoded output pixels. This exposes process memory to anyone who can supply an image for decoding. The fix rejects inputs whose chroma bit depth differs from the luma bit depth.
You are affected if you are using a version that falls within the vulnerable range and you decode uncompressed images whose luma and chroma bit depths differ (YCbCr 4:2:0 to 16-bit RGB conversion).
strukturag.libheif is vulnerable to Out-of-bounds Read in versions 1.18.0 - 1.23.2.
Upgrade the strukturag.libheif library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.