Vulnerabilidades en strukturag
32 resultadosAnálisis Vexday
A Struktur AG registra 27 vulnerabilidades na base, com 21 publicadas nos últimos 90 dias, indicando ritmo intenso de descobertas recentes. Nenhuma dessas falhas está sob ataque ativo confirmado (KEV) e não há críticas CVSS, o que reduz a urgência operacional imediata. A fraqueza dominante é leitura fora dos limites (CWE-125), típica de implementações em linguagens de baixo nível, sugerindo risco moderado de execução remota dependente de contexto.
CVE-2026-49271MEDIUMlibheif: Wrapped icef compressed-unit range check causes out-of-bounds read in uncompressed HEIF decoderEPSS 0.2%CVE-2026-49337MEDIUMlibde265 has an unbounded memory leak via orphaned slice headers in `read_slice_NAL`EPSS 0.2%CVE-2026-47254MEDIUMlibheif Has Heap Buffer Overflow in `Track::get_next_sample_raw_data()` -- OOB Chunk Vector AccessEPSS 0.2%CVE-2026-47251MEDIUMlibheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2EPSS 0.2%CVE-2026-3949MEDIUMstrukturag libheif HEIF File decoder_vvdec.cc vvdec_push_data2 out-of-boundsEPSS 0.1%CVE-2026-3950MEDIUMstrukturag libheif stsz/stts track.cc load out-of-boundsEPSS 0.1%CVE-2026-47714MEDIUMlibheif has integer overflow in inline mask size calculation that causes undersized buffer allocationEPSS 0.1%CVE-2026-62377MEDIUMlibheif: Reachable assertion in HeifContext::get_track() aborts on a valid-but-empty HEIF sequence file (context.cc:2110)EPSS —CVE-2026-62291MEDIUMlibheif: Heap out of bounds write in libheif uncompressed encoder when writing images with mismatched auxiliary alpha dimensionsEPSS —CVE-2026-62292HIGHlibheif: Out-of-bounds read in uncompressed unci tile range slicingEPSS —CVE-2026-62289MEDIUMlibheif: Integer underflow in Fraction constructor via double clap transform applicationEPSS —CVE-2026-50142HIGHlibheif: unbounded heap allocation in HEIF sequence parser (stsz fixed-size mode missing bound check)EPSS —