Vulnerabilities > Struktur > Libheif > 1.4.0

DATE CVE VULNERABILITY TITLE RISK
2025-04-21 CVE-2025-43966 NULL Pointer Dereference vulnerability in Struktur Libheif
libheif before 1.19.6 has a NULL pointer dereference in ImageItem_iden in image-items/iden.cc.
network
low complexity
struktur CWE-476
7.5
2025-04-21 CVE-2025-43967 NULL Pointer Dereference vulnerability in Struktur Libheif
libheif before 1.19.6 has a NULL pointer dereference in ImageItem_Grid::get_decoder in image-items/grid.cc because a grid image can reference a nonexistent image item.
network
low complexity
struktur CWE-476
7.5
2021-07-21 CVE-2020-19498 Unspecified vulnerability in Struktur Libheif 1.4.0
Floating point exception in function Fraction in libheif 1.4.0, allows attackers to cause a Denial of Service or possibly other unspecified impacts.
network
low complexity
struktur
8.8
2021-07-21 CVE-2020-19499 Out-of-bounds Read vulnerability in Struktur Libheif 1.4.0
An issue was discovered in heif::Box_iref::get_references in libheif 1.4.0, allows attackers to cause a Denial of Service or possibly other unspecified impact due to an invalid memory read.
network
low complexity
struktur CWE-125
8.8
2019-04-23 CVE-2019-11471 Use After Free vulnerability in Struktur Libheif 1.4.0
libheif 1.4.0 has a use-after-free in heif::HeifContext::Image::set_alpha_channel in heif_context.h because heif_context.cc mishandles references to non-existing alpha images.
network
low complexity
struktur CWE-416
8.8