Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

strukturag — Vulnerabilities & Security Advisories 27

Browse all 27 CVE security advisories affecting strukturag. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Strukturag develops enterprise software solutions for document management and workflow automation, primarily serving government and financial sectors. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and access control flaws. Six CVEs have been recorded, with several allowing attackers to execute arbitrary code or bypass authentication. While no major public security incidents have been documented, the consistent pattern of vulnerabilities in core functionality suggests ongoing challenges in secure coding practices, particularly in handling user inputs and implementing proper session management.

CVE IDTitleCVSSSeverityPublished
CVE-2026-48029 libheif: heap OOB read in ImageItem_Grid::decode_grid_tile via irot-induced tile-coordinate underflow — libheifCWE-125 7.1 High2026-07-22
CVE-2026-47709 libheif has a NULL pointer dereference in heif_image_handle_get_image_tiling for malformed unci image missing ispe — libheifCWE-476--2026-07-21
CVE-2026-47254 libheif Has Heap Buffer Overflow in `Track::get_next_sample_raw_data()` -- OOB Chunk Vector Access — libheifCWE-125 6.1 Medium2026-07-21
CVE-2026-47251 libheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2 — libheifCWE-125--2026-07-21
CVE-2026-47247 libheif Vulnerable to Heap Information Disclosure via Grid Image Gap + Uninitialized Pixel Plane Allocation — libheifCWE-200 7.5 High2026-07-21
CVE-2026-47178 libheif has Heap Out Of Bounds Write in unci subsystem — libheifCWE-787 6.1 Medium2026-07-21
CVE-2026-47714 libheif has integer overflow in inline mask size calculation that causes undersized buffer allocation — libheifCWE-190 6.1 Medium2026-07-21
CVE-2026-45383 libde265 has a heap buffer overflow (OOB read) in decode_slice_unit_WPP() via out-of-bounds CtbAddrRStoTS access — libde265 <= v1.0.18 — libde265CWE-125--2026-07-21
CVE-2026-45382 libde265 has a heap-buffer-overflow READ in decode_slice_unit_tiles via unvalidated PPS tile geometry — libde265CWE-125 6.9 Medium2026-07-21
CVE-2026-49346 libde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimension integer overflow — libde265CWE-190 7.1 High2026-06-19
CVE-2026-49295 libde265 has an out-of-bounds write in process_reference_picture_set via predicted short-term RPS — libde265CWE-787 7.1 High2026-06-19
CVE-2026-49337 libde265 has an unbounded memory leak via orphaned slice headers in `read_slice_NAL` — libde265CWE-770 4.3 Medium2026-06-19
CVE-2026-49271 libheif: Wrapped icef compressed-unit range check causes out-of-bounds read in uncompressed HEIF decoder — libheifCWE-125 6.5 Medium2026-06-19
CVE-2026-41071 libheif: Heap buffer over-read in SampleAuxInfoReader via crafted HEIF sequence file with mismatched saiz sample count — libheifCWE-125--2026-05-22
CVE-2026-41069 libheif allows Out-of-bounds vector access leading to invalid dereference (DoS) — libheifCWE-125 6.5 Medium2026-05-22
CVE-2026-32882 libheif: Heap Buffer OOB Read in overlay compositing due to wrong alpha stride — libheifCWE-125 7.1 High2026-05-19
CVE-2026-32741 libheif has a heap buffer overflow in decode_mask_image() — libheifCWE-122 7.1 High2026-05-19
CVE-2026-32814 libheif: Uninitialized Heap Memory Information Leak via Failed Grid Tiles — libheifCWE-200 6.5 Medium2026-05-19
CVE-2026-32740 libheif: Heap-Buffer-Overflow Write in Grid Tile Chroma Compositing — libheifCWE-787 8.8 High2026-05-19
CVE-2026-32739 libheif is Vulnerable to Infinite Loop DoS via stts Sample Duration Lookup — libheifCWE-835 6.5 Medium2026-05-19
CVE-2026-32738 libheif has a Heap OOB Read/SEGV Crash via Zero samples_per_chunk — libheifCWE-125 6.5 Medium2026-05-19
CVE-2026-33164 NULL Pointer Dereference in libde265 — libde265CWE-122 7.5 -2026-03-20
CVE-2026-33165 heap out-of-bounds write in libde265 1.0.16 — libde265CWE-787 5.5 Medium2026-03-20
CVE-2026-3950 strukturag libheif stsz/stts track.cc load out-of-bounds — libheifCWE-125 3.3 Low2026-03-11
CVE-2026-3949 strukturag libheif HEIF File decoder_vvdec.cc vvdec_push_data2 out-of-bounds — libheifCWE-125 3.3 Low2026-03-11
CVE-2025-68431 libheif has Potential Heap Buffer Over-Read — libheifCWE-125 6.5 Medium2025-12-29
CVE-2022-1253 Heap-based Buffer Overflow in strukturag/libde265 — strukturag/libde265CWE-122 9.8 -2022-04-06

This page lists every published CVE security advisory associated with strukturag. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.