CVE-2024-25269: Struktur Libheif

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

libheif <= 1.17.6 contains a memory leak in the function JpegEncoder::Encode. This flaw allows an attacker to cause a denial of service attack.

Affected products

  • Struktur Libheif: up to and including 1.17.6

Published 2024-03-05. Last modified 2026-06-17.