[ubuntu/resolute-security] libheif 1.21.2-3ubuntu0.2 (Accepted)
Kyle Kernick
kyle.kernick at canonical.com
Mon Jun 29 15:24:56 UTC 2026
libheif (1.21.2-3ubuntu0.2) resolute-security; urgency=medium
* SECURITY UPDATE: Out-of-bound memory access in tiled chroma decode.
- debian/patches/CVE-2026-47178.patch: Fix heap OOB in
libheif/codecs/uncompressed/decoder_component_interleave.cc,
../decoder_mixed_interleave.cc, and tests/uncompressed_encode.cc
- CVE-2026-47178
* SECURITY UPDATE: Integer overflow in UNCI.
- debian/patches/CVE-2026-49271.patch: Prevent integer overflow
when reading compressed data in
libheif/codecs/uncompressed/decoder_abstract.cc
- CVE-2026-49271
Date: 2026-06-23 23:19:10.866023+00:00
Changed-By: Kyle Kernick <kyle.kernick at canonical.com>
https://launchpad.net/ubuntu/+source/libheif/1.21.2-3ubuntu0.2
-------------- next part --------------
Sorry, changesfile not available.
More information about the Resolute-changes
mailing list