NULL Pointer Dereference
CVE-2025-43967
Summary
libheif through 1.19.5 has a NULL Pointer Dereference vulnerability in "ImageItem_Grid::get_decoder" function in `image-items/grid.cc` because a grid image can reference a nonexistent image item.
- LOW
- NETWORK
- NONE
- UNCHANGED
- NONE
- NONE
- NONE
- HIGH
CWE-476 - NULL Pointer Dereference
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
References
Advisory Timeline
- Published