CVE-2026-48029: libheif: heap OOB read in ImageItem_Grid::decode_grid_tile via irot-induced tile-coordinate underflow
Published Jul 22, 2026
·Updated
Last updated 10 July 2026
Other sources
libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.19.0 through 1.21.2 have a heap OOB read in ImageItemGrid::decodegridtile via irot-induced tile-coordinate underflow. Version 1.22.0 fixes the issue.
— MITRE
Affected Software
2 affected componentsFixes available
debian/libheif<=1.11.0-1, <=1.11.0-1+deb11u2, <=1.15.1-1+deb12u1, <=1.19.8-1, <=1.21.2-4
1.23.1-1
struktur Libheif>=1.19.0<1.22.0
Remediation
Event History
Jul 9, 2026
Data Sourced
via Debian·09:52 PM
DescriptionAffected Software
Jul 10, 2026
Data Sourced
via Ubuntu·09:53 PM
RemedyDescriptionSeverityAffected Software
Jul 22, 2026
CVE Published
via MITRE·02:13 PM
Data Sourced
via MITRE·02:13 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:17 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-48029?
The severity of CVE-2026-48029 is rated as high with a score of 7.1.
2
How do I fix CVE-2026-48029?
To fix CVE-2026-48029, upgrade to libheif version 1.22.0 or later.
3
What type of vulnerability is CVE-2026-48029?
CVE-2026-48029 is classified as an integer underflow vulnerability.
4
Which versions of libheif are affected by CVE-2026-48029?
Versions 1.19.0 through 1.21.2 of libheif are affected by CVE-2026-48029.
5
What impact does CVE-2026-48029 have?
CVE-2026-48029 can lead to a heap out-of-bounds read, potentially allowing for information disclosure.