Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-06518
HistoryJul 22, 2021 - 12:00 a.m.

libheif Denial of Service Vulnerability

2021-07-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

EPSS

0.002

Percentile

57.0%

libheif is an ISO/IEC 23008-12:2017 HEIF file format decoder and encoder. libheif version 1.4.0 contains a denial-of-service vulnerability in heif::Box_iref::get_references. The vulnerability stems from an invalid memory read. An attacker could exploit this vulnerability to cause a denial of service.

EPSS

0.002

Percentile

57.0%