CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-47709

mediumCVSS 5.5covered by 3 sourcesfirst seen 2026-07-09
libheif is a HEIF and AVIF file format decoder and encoder. Versions prior to 1.22.0 crashes in the public C API heif_image_handle_get_image_tiling() when a malformed uncompressed HEIF image item has an associated uncC property but no associated ispe property. In debug builds this trips the ispe && uncC assertion in ImageItem_uncompressed::get_heif_image_tiling(). In a release/NDEBUG ASan build, the same file causes a null pointer read at address 0xa8. Version 1.22.0 fixes the issue.

CSIRTS triage

What
libheif has vulnerabilities that could lead to denial of service or information disclosure.
Who is affected
Deployments of libheif in Ubuntu 24.04 LTS are affected.
Urgency
Remediation is necessary due to potential denial of service and information exposure.
Action
Update to the latest version of libheif.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-47709

Get an email if CVE-2026-47709 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (3)

External references

NVD record for CVE-2026-47709

CVE.org record

Embed the live status

CVE-2026-47709 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-47709 status](https://www.csirts.com/badge/CVE-2026-47709)](https://www.csirts.com/cve/CVE-2026-47709)