PT-2026-95480 · Libheif · Libheif

CVE-2026-84449

·

Published

2026-09-18

·

Updated

2026-09-18

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions libheif versions prior to 1.19.6
Description An integer overflow occurs in the Op RGB24 32 to YCbCr::convert colorspace() function when processing extremely large RGB images created via heif image create() and heif image add plane(). This overflow affects how image-plane strides are stored, leading the conversion loop in libheif/color-conversion/rgb2yuv.cc to calculate an invalid input pointer. Consequently, the system reads beyond the allocated interleaved plane during RGB-to-YCbCr conversion performed by heif context encode image(), which can result in a crash of the encoding process.
Recommendations Update to version 1.19.6.

Exploit

Fix

Integer Overflow

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-84449
GHSA-2C3G-P585-8RPQ

Affected Products

Libheif