A vulnerability was identified in strukturag libheif up to 1.21.2. This impacts the function Track::load of the file libheif/sequences/track.cc of the component stsz/stts. The manipulation leads to out-of-bounds read. The attack needs to be performed locally. The exploit is publicly available and might be used. Applying a patch is the recommended action to fix this issue. The patch available is inofficial and not approved yet.
{
"binaries": [
{
"binary_name": "heif-gdk-pixbuf",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "heif-thumbnailer",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "heif-view",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-examples",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-aomdec",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-aomenc",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-dav1d",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-ffmpegdec",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-j2kdec",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-j2kenc",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-jpegdec",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-jpegenc",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-kvazaar",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-libde265",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-rav1e",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-svtenc",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugin-x265",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif-plugins-all",
"binary_version": "1.20.2-1ubuntu0.3"
},
{
"binary_name": "libheif1",
"binary_version": "1.20.2-1ubuntu0.3"
}
]
}