Description
libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.2, crafted HEIF or AVIF mime metadata and unci image data can cause decompress_brotli() and do_inflate() to grow accumulated output without an effective size limit or MemoryHandle accounting. The brotli path has no output bound, while the zlib path checks only a small temporary buffer in a branch that valid streams do not reach, and overlapping icef units can decompress the same payload repeatedly. HeifContext::interpret_heif_file_images() processes multiple compressed metadata items during file opening, allowing a small file to consume unbounded memory and terminate the process. This issue is fixed in version 1.23.2.
Published: 2026-09-18
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Upgrade
AI Analysis

Impact

The vulnerability in libheif allows an attacker to craft HEIF or AVIF files that trigger unbounded memory allocations during Brotli and zlib decompression. Because the decompress_brotli() function lacks an output-size bound and the zlib path only checks a small temporary buffer in a branch not taken by valid streams, an input file can cause the decoder to consume an arbitrary amount of memory and crash the process. This is a classic "insufficient bounds checking" flaw (CWE‑409) that results in a denial‑of‑service condition.

Affected Systems

The flaw affects the libheif library maintained by strukturag, specifically versions 1.19.0 through 1.23.1 inclusive. Systems that use libheif to decode HEIF or AVIF images—such as media players, image editors, and any software that processes these formats—are potentially impacted.

Risk and Exploitability

The CVSS score of 7.5 indicates a high severity. The EPSS score of < 1% indicates a very low yet nonzero probability of exploitation, suggesting that while the likelihood is low, the vulnerability remains a valid risk. The vulnerability is not listed in the CISA KEV catalog. Attackers can exploit it by providing a malicious HEIF or AVIF file to any component that decodes images using the affected libheif version. Local or remote execution is possible if the target application opens user-controlled files; the attack vector is therefore inferred to be an input‑based local or remote path depending on how the application accesses files.

Generated by OpenCVE AI on September 19, 2026 at 17:39 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade libheif to version 1.23.2 or later to receive the fixed decompression size checks.
  • For deployments that cannot immediately upgrade, isolate the image‑decoding process in a sandbox or a separate container with restricted memory limits to contain any potential out‑of‑memory crashes.
  • If possible, pre‑validate HEIF/AVIF metadata size or reject files with unusually large metadata blocks before invoking libheif to mitigate the risk of a denial‑of‑service.

Generated by OpenCVE AI on September 19, 2026 at 17:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6523-1 libheif security update
Ubuntu USN Ubuntu USN USN-8846-1 libheif vulnerabilities
History

Sat, 19 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Struktur
Struktur libheif
Vendors & Products Struktur
Struktur libheif

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 16:00:00 +0000

Type Values Removed Values Added
Description libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.2, crafted HEIF or AVIF mime metadata and unci image data can cause decompress_brotli() and do_inflate() to grow accumulated output without an effective size limit or MemoryHandle accounting. The brotli path has no output bound, while the zlib path checks only a small temporary buffer in a branch that valid streams do not reach, and overlapping icef units can decompress the same payload repeatedly. HeifContext::interpret_heif_file_images() processes multiple compressed metadata items during file opening, allowing a small file to consume unbounded memory and terminate the process. This issue is fixed in version 1.23.2.
Title libheif: brotli/zlib decompression paths lack output-size limits, allowing decompression-bomb OOM/DoS
Weaknesses CWE-409
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Struktur Libheif
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-18T17:30:52.628Z

Reserved: 2026-09-01T16:27:58.131Z

Link: CVE-2026-84384

cve-icon Vulnrichment

Updated: 2026-09-18T17:30:45.480Z

cve-icon NVD

Status : Deferred

Published: 2026-09-18T16:17:11.900

Modified: 2026-09-18T18:17:16.907

Link: CVE-2026-84384

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:15:05Z

Weaknesses
  • CWE-409

    Improper Handling of Highly Compressed Data (Data Amplification)