Bugzilla – Bug 1217899
VUL-0: CVE-2023-49463: libheif: libheif: find_exif_tag SEGV
Last modified: 2023-12-08 07:52:16 UTC
libheif v1.17.5 was discovered to contain a segmentation violation via the function find_exif_tag at /libheif/exif.cc. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-49463
The issue lies inside the libheif example code, not inside the library itself. Furthermore the affected code is not present in our current version of libheif. Closing as fixed.