PT-2026-95480 · Libheif · Libheif
CVE-2026-84449
·
Published
2026-09-18
·
Updated
2026-09-18
CVSS v3.1
3.7
Low
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
libheif versions prior to 1.19.6
Description
An integer overflow occurs in the
Op RGB24 32 to YCbCr::convert colorspace() function when processing extremely large RGB images created via heif image create() and heif image add plane(). This overflow affects how image-plane strides are stored, leading the conversion loop in libheif/color-conversion/rgb2yuv.cc to calculate an invalid input pointer. Consequently, the system reads beyond the allocated interleaved plane during RGB-to-YCbCr conversion performed by heif context encode image(), which can result in a crash of the encoding process.Recommendations
Update to version 1.19.6.
Exploit
Fix
Integer Overflow
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Libheif