CVE-2023-0996: Struktur Libheif

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

Affected products

Published 2023-02-24. Last modified 2026-06-17.