CVE-2025-65586: Libheif Flaw Exposes Image Decoders to Denial-of-Service
ID: e3a7325a-1ada-5d83-9e9b-544aba5df79c
STIX ID: report--e3a7325a-1ada-5d83-9e9b-544aba5df79c
Feed Name: securityonline.info
Threat Score
**Executive summary:** A newly disclosed vulnerability (CVE-2025-65586) in libheif's uncompressed decoder can trigger out-of-bounds reads and crash applications processing malicious HEIF/AVIF images (DoS); maintainers have patched the issue in libheif 1.21.0 and users are advised to update.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
