Security Advisory

CVE-2017-13318

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-01-28 16:51:05
Last updated 2025-01-28 19:51:54
Assigner google_android
CVSS score 5.7
State PUBLISHED

Description

In HeifDataSource::readAt of HeifDecoderImpl.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.