Bug 2361285 (CVE-2025-43966)

Summary: CVE-2025-43966 libheif: "NULL Pointer Dereference in ImageItem_iden in libheif
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security DevOps Team <prodsec-dev>
Status: NEW --- QA Contact:
Severity: low Docs Contact:
Priority: low    
Version: unspecifiedKeywords: Security
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
A flaw was found in libheif. In affected versions, a NULL pointer dereference occurs in ImageItem_iden in image-items/iden.cc.
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2361386, 2361387, 2361388, 2361389    
Bug Blocks:    

Description OSIDB Bzimport 2025-04-21 00:01:14 UTC
libheif before 1.19.6 has a NULL pointer dereference in ImageItem_iden in image-items/iden.cc.

Comment 2 Dominik 'Rathann' Mierzejewski 2025-04-29 10:12:44 UTC
Fixed upstream in 1.19.6+ (b38555387e4b5dcf036fe45b0c440aca19b7b69c), see: https://github.com/advisories/GHSA-7g9v-7vc7-pmrw .