Known vulnerabilities in libheif 1.23.3
Vendor:
struktur AG
Software:
libheif
Version:
1.23.3
Software CPE:
cpe:2.3:a:strukturag:libheif:*:*:*:*:*:*:*:*
Website:
https://github.com/strukturag/
Total vulnerabilities:
8
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Vulnerabilities by Severity
1.23.4
1.23.3
1.23.2
1.23.1
1.23.0
1.22.2
1.22.1
1.22.0
1.21.2
1.21.1
1.21.0
1.20.2
1.20.1
1.20.0
1.19.8
1.19.7
1.19.6
1.19.5
1.19.4
1.19.3
1.19.2
1.19.1
1.19.0
1.18.2
1.18.1
1.18.0
1.17.6
1.17.5
1.17.4
1.17.3
1.17.2
1.17.1
1.17.0
1.16.2
1.16.1
1.16.0
1.15.2
1.15.1
1.15.0
1.14.1
1.14.0
1.13.0
1.12.0
1.11.0
1.10.0
1.9.1
1.9.0
1.8.0
1.7.0
1.6.2
1.6.1
1.6.0
1.5.1
1.5.0
1.4.1
1.4.0
1.3.2
1.3.1
1.3.0
1.2.0
1.1.0
1.0.0
1.14.2
Vulnerabilities (8)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU147375 - Out-of-bounds read |
CWE-125 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147374 - Deadlock |
CWE-833 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147373 - Uncontrolled Recursion |
CWE-674 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147371 - Allocation of Resources Without Limits or Throttling |
CWE-770 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147372 - Allocation of Resources Without Limits or Throttling |
CWE-770 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147364 - Missing release of memory after effective lifetime |
CWE-401 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147365 - Uncaught Exception |
CWE-248 | Medium | 1.23.4 | 08.09.2026 |
SB2026090827 |
||
| #VU147363 - Out-of-bounds read |
CWE-125 | Low | 1.23.4 | 08.09.2026 |
SB2026090827 |