In convertCleanApertureToRect of HeifCleanAperture.cpp, there is a possible way to cause a temporary denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
History

Wed, 09 Sep 2026 15:15:00 +0000

Type Values Removed Values Added
Title Integer Overflow in HeifCleanAperture Function Leading to Denial of Service
Weaknesses CWE-190
CWE-680

Tue, 08 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Description In convertCleanApertureToRect of HeifCleanAperture.cpp, there is a possible way to cause a temporary denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2026-09-08T18:05:39.321Z

Updated: 2026-09-10T15:42:07.599Z

Reserved: 2026-05-12T17:37:06.748Z

Link: CVE-2026-45527

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-08T19:17:57.910

Modified: 2026-09-08T19:21:26.860

Link: CVE-2026-45527

cve-icon Redhat

No data.