VYPR
Medium severity5.5NVD Advisory· Published Sep 20, 2021· Updated Jun 17, 2026

CVE-2021-32289

CVE-2021-32289

Description

An issue was discovered in heif through through v3.6.2. A NULL pointer dereference exists in the function convertByteStreamToRBSP() located in nalutil.cpp. It allows an attacker to cause Denial of Service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • heif/heifdescription
  • cpe:2.3:a:nokia:heif:*:*:*:*:*:*:*:*
    Range: <=3.6.2
  • nokiatech/heifllm-fuzzy
    Range: <=3.6.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.