logo

CVE-2025-65586: Libheif Flaw Exposes Image Decoders to Denial-of-Service

ID: e3a7325a-1ada-5d83-9e9b-544aba5df79c

STIX ID: report--e3a7325a-1ada-5d83-9e9b-544aba5df79c

Feed Name: securityonline.info

Threat Score
40/100

Date Published: 2026-01-21

Date Updated: 2026-04-23

Author: Ddos

...
...

**Executive summary:** A newly disclosed vulnerability (CVE-2025-65586) in libheif's uncompressed decoder can trigger out-of-bounds reads and crash applications processing malicious HEIF/AVIF images (DoS); maintainers have patched the issue in libheif 1.21.0 and users are advised to update.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.