CVE-2017-13318
CVSS 3.1 Score 5.7 of 10 (medium)
Details
Published Jan 28, 2025
CWE ID 125
CWE ID 190
Summary
CVE-2017-13318 is a cybersecurity vulnerability affecting HeifDecoderImpl.cpp in HeifDataSource. The issue involves an integer overflow in the "readAt" function, leading to a possible out-of-bounds read. This vulnerability can result in remote information disclosure, meaning sensitive data can be accessed by unauthorized entities. However, it should be noted that this exploit requires user interaction to be successful, limiting its potential impact on systems without proper security measures in place.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share