CVE-2024-41311

In Libheif 1.17.6, insufficient checks in ImageOverlay::parse() decoding a heif file containing an overlay image with forged offsets can lead to an out-of-bounds read and write.
Configurations

Configuration 1 (hide)

cpe:2.3:a:struktur:libheif:1.17.6:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-10-15 21:15

Updated : 2025-03-24 14:41


NVD link : CVE-2024-41311

Mitre link : CVE-2024-41311

CVE.ORG link : CVE-2024-41311


JSON object : View

Products Affected

struktur

  • libheif

debian

  • debian_linux
CWE
CWE-125

Out-of-bounds Read

CWE-787

Out-of-bounds Write