We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Advisory CVE-2025-43966 references a vulnerability in the following Go modules:
Description: libheif before 1.19.6 has a NULL pointer dereference in ImageItem_iden in image-items/iden.cc.
References:
Cross references:
See doc/quickstart.md for instructions on how to triage this report.
id: GO-ID-PENDING modules: - module: github.com/strukturag/libheif vulnerable_at: 1.19.7 summary: CVE-2025-43966 in github.com/strukturag/libheif cves: - CVE-2025-43966 references: - advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-43966 - fix: https://github.com/strukturag/libheif/commit/b38555387e4b5dcf036fe45b0c440aca19b7b69c - web: https://github.com/strukturag/libheif/compare/v1.19.5...v1.19.6 source: id: CVE-2025-43966 created: 2025-04-21T01:01:15.471212181Z review_status: UNREVIEWED
The text was updated successfully, but these errors were encountered:
Patch is non-Go: strukturag/libheif@b385553
Sorry, something went wrong.
No branches or pull requests
Advisory CVE-2025-43966 references a vulnerability in the following Go modules:
Description:
libheif before 1.19.6 has a NULL pointer dereference in ImageItem_iden in image-items/iden.cc.
References:
Cross references:
See doc/quickstart.md for instructions on how to triage this report.
The text was updated successfully, but these errors were encountered: