CVE-2020-23109 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Information disclosure |
| Description | A buffer overflow vulnerability in the function convert_colorspace in heif_colorconversion.cc in libheif allows attackers to cause a denial of service and disclose sensitive information via a crafted HEIF file. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2520 | libheif | 1.12.0-2 | Medium | Vulnerable |
| References |
|---|
https://github.com/strukturag/libheif/issues/207 |