UbuntuUpdates.org

Package "libheif-examples"

Name: libheif-examples

Description:

ISO/IEC 23008-12:2017 HEIF file format decoder - examples

Latest version: 1.17.6-1ubuntu4.2
Release: noble (24.04)
Level: updates
Repository: main
Head package: libheif
Homepage: http://www.libheif.org

Links


Download "libheif-examples"


Other versions of "libheif-examples" in Noble

Repository Area Version
base main 1.17.6-1ubuntu4
security main 1.17.6-1ubuntu4.2

Changelog

Version: 1.17.6-1ubuntu4.2 2026-01-12 03:29:24 UTC

  libheif (1.17.6-1ubuntu4.2) noble-security; urgency=medium

  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2024-25269.patch: Fix memory leaks in function
      JpegEncoder::Encode
    - CVE-2024-25269
  * SECURITY UPDATE: Buffer Overflow
    - debian/patches/CVE-2025-68431.patch: Fix wrong copy width in
      overlay images, thanks to Aldo Ristori
    - CVE-2025-68431

 -- Bruce Cable <email address hidden> Wed, 07 Jan 2026 17:41:16 +1100

Source diff to previous version
CVE-2024-25269 libheif <= 1.17.6 contains a memory leak in the function JpegEncoder::Encode. This flaw allows an attacker to cause a denial of service attack.
CVE-2025-68431 libheif is an HEIF and AVIF file format decoder and encoder. Prior to version 1.21.0, a crafted HEIF that exercises the overlay image item path trigg

Version: 1.17.6-1ubuntu4.1 2024-10-23 12:08:15 UTC

  libheif (1.17.6-1ubuntu4.1) noble-security; urgency=medium

  * SECURITY UPDATE: out-of-bounds data read/write in ImageOverlay::parse()
    - debian/patches/CVE-2024-41311.patch: added patch to check that
      overlay's offsets are valid
    - CVE-2024-41311

 -- Shishir Subedi <email address hidden> Mon, 21 Oct 2024 16:33:55 +0545

CVE-2024-41311 In Libheif 1.17.6, insufficient checks in ImageOverlay::parse() decoding a heif file containing an overlay image with forged offsets can lead to an o



About   -   Send Feedback to @ubuntu_updates