strukturag.libheif is vulnerable to Denial of Service (DoS)
87
High Risk
When parsing the iinf box, libheif passes the file-declared item count to the child-box reader without checking it against the configured item limit, because the cardinality check runs only on a different parse branch. A file that declares a very large item count forces quadratic parsing time and a large allocation, and on WebAssembly builds an unbounded alloca corrupts the stack. This lets a small crafted file exhaust resources at parse time. The fix enforces the item limit on the iinf child count.
You are affected if you are using a version that falls within the vulnerable range.
strukturag.libheif is vulnerable to Denial of Service (DoS) in versions 1.19.0 - 1.23.3.
Upgrade the strukturag.libheif library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.