There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GovTech CSG

Published: 2023-02-24T03:35:58.752Z

Updated: 2024-08-02T05:32:46.260Z

Reserved: 2023-02-24T03:17:18.663Z

Link: CVE-2023-0996

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-02-24T04:15:12.317

Modified: 2023-11-07T04:02:08.107

Link: CVE-2023-0996

cve-icon Redhat

No data.