Out-of-bounds write in libheif - #VU145254

 

Out-of-bounds write in libheif - #VU145254

Published: August 25, 2026


Vulnerability identifier: #VU145254
CSH Severity: Medium
CVSS v4: 8.3 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-787
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause memory corruption.

The vulnerability exists due to out-of-bounds write in heif_context_add_image_tile() when encoding an ISO/IEC 23001-17 uncompressed tiled image with inconsistent component plane sizes. A remote attacker can supply a specially crafted heif_image tile with component planes larger than its declared dimensions to cause memory corruption.

Only builds with the experimental uncompressed codec enabled are affected.


Affected software

libheif

Remediation

Install security update from vendor's website.

libheif - update to 1.23.2

External References

Related Security Bulletins