Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.
Fedora builds are not linked with libde265, so they're not affected.
Besides, the bug is in libde265. libheif was only used to call the vulnerable libde265 function in the PoC.
Correct upstream link: https://github.com/strukturag/libde265/issues/472 . Please add it to the references at https://access.redhat.com/security/cve/CVE-2025-29482 .