SUSE SLED15: gdk-pixbuf-loader-libheif / libheif-aom / libheif-dav1d / etc (SUSE-SU-2026:4276-1)

critical Nessus Plugin ID 348723

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:4276-1 advisory.

- CVE-2026-84383: Heap buffer overflow in scale_nearest_neighbor() via duplicate alpha planes from nested iden/auxl items (bsc#1279443).
- CVE-2026-84384: brotli/zlib decompression paths lack output-size limits, allowing decompression-bomb OOM/DoS (bsc#1279445).
- CVE-2026-84444: Out-of-bounds write in the unci encoder (bsc#1279448).
- CVE-2026-84446: Sequence decode timing-table initialization allows non-terminating loops and unbounded memory, bypassing max_sequence_frames (bsc#1279447).
- CVE-2026-84447: Derived-image indirect reference chains and tiled offsets bypass decode caching and MemoryHandle limits, causing CPU/memory amplification DoS (bsc#1279446).
- CVE-2026-84448: Heap out-of-bounds read in the inline-mask region API (bsc#1279449).
- CVE-2026-84450: image item with `clap` property and an ispe declaring a dimension greater than `INT32_MAX + 1` can lead to a crash via an abort (bsc#1280002).
- CVE-2026-84451: crafted HEIF file advertising a 4096 x 4096 uncompressed tile grid can cause an out-of- bounds read due to an integer overflow (bsc#1280001).
- Out-of-bounds read and write in derived-item and pixel-plane handling (bsc#1279444).

Changes for libheif:

- Update to version 1.23.4 (jsc#PED-16355)

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1279443

https://bugzilla.suse.com/1279444

https://bugzilla.suse.com/1279445

https://bugzilla.suse.com/1279446

https://bugzilla.suse.com/1279447

https://bugzilla.suse.com/1279448

https://bugzilla.suse.com/1279449

https://bugzilla.suse.com/1280001

https://bugzilla.suse.com/1280002

https://www.suse.com/security/cve/CVE-2026-84383

https://www.suse.com/security/cve/CVE-2026-84384

https://www.suse.com/security/cve/CVE-2026-84444

https://www.suse.com/security/cve/CVE-2026-84446

https://www.suse.com/security/cve/CVE-2026-84447

https://www.suse.com/security/cve/CVE-2026-84448

https://www.suse.com/security/cve/CVE-2026-84450

https://www.suse.com/security/cve/CVE-2026-84451

http://www.nessus.org/u?f9023f95

Plugin Details

Severity: Critical

ID: 348723

File Name: suse_SU-2026-4276-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 9/22/2026

Updated: 9/22/2026

Supported Sensors: Continuous Assessment, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 58.27

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-84383

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:gdk-pixbuf-loader-libheif, p-cpe:/a:novell:suse_linux:libheif-aom, p-cpe:/a:novell:suse_linux:libheif-dav1d, p-cpe:/a:novell:suse_linux:libheif-devel, p-cpe:/a:novell:suse_linux:libheif-ffmpeg, p-cpe:/a:novell:suse_linux:libheif-jpeg, p-cpe:/a:novell:suse_linux:libheif-rav1e, p-cpe:/a:novell:suse_linux:libheif1

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 9/21/2026

Vulnerability Publication Date: 9/17/2026

Reference Information

CVE: CVE-2026-84383, CVE-2026-84384, CVE-2026-84444, CVE-2026-84446, CVE-2026-84447, CVE-2026-84448, CVE-2026-84450, CVE-2026-84451

IAVB: 2026-B-0259

SuSE: SUSE-SU-2026:4276-1