PT-2026-48604 · Libheif+1 · Libheif+1

·

CVE-2026-49271

·

Published

2026-06-09

·

Updated

2026-08-24

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions libheif versions prior to 1.22.1
Description The uncompressed HEIF decoder validates explicit icef compressed-unit offsets using unit offset + unit size. An integer wrap during this addition allows a crafted HEIF file to bypass range checks and construct a vector from iterators outside the compressed item buffer, resulting in an out-of-bounds heap read and a system crash.
Recommendations Update to version 1.22.1.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-49271
ECHO-77C2-91A0-4936
GHSA-R7QJ-CG5R-R6VF
OPENSUSE-SU-2026:10983-1
OPENSUSE-SU-2026:20974-1
SUSE-SU-2026:22153-1
SUSE-SU-2026:2622-1
USN-8479-1

Affected Products

Ubuntu
Libheif