icon

We found results for “

CVE-2025-68431

Good to know:

icon
icon

Date: December 29, 2025

libheif is an HEIF and AVIF file format decoder and encoder. Prior to version 1.21.0, a crafted HEIF that exercises the overlay image item path triggers a heap buffer over-read in "HeifPixelImage::overlay()". The function computes a negative row length (likely from an unclipped overlay rectangle or invalid offsets), which then underflows when converted to "size_t" and is passed to "memcpy", causing a very large read past the end of the source plane and a crash. Version 1.21.0 contains a patch. As a workaround, avoid decoding images using "iovl" overlay boxes.

Severity Score

Severity Score

Weakness Type (CWE)

Integer Overflow or Wraparound

CWE-190

Out-of-bounds Read

CWE-125

Top Fix

icon

Upgrade Version

Upgrade to version https://github.com/strukturag/libheif.git - v1.21.0

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): LOW
Privileges Required (PR): NONE
User Interaction (UI): REQUIRED
Scope (S): UNCHANGED
Confidentiality (C): NONE
Integrity (I): NONE
Availability (A): HIGH

Do you need more information?

Contact Us