Opened 9 months ago

Closed 9 months ago

Last modified 8 months ago

#22575 closed enhancement (fixed)

libheif-1.21.1

Reported by: Bruce Dubbs Owned by: Douglas R. Reno
Priority: elevated Milestone: 13.0
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

New minor version.

Change History (7)

comment:1 by Douglas R. Reno, 9 months ago

Priority: normal → elevated

This is a security update, but no advisory will be required as this package was added after BLFS 12.4 was released.

Release notes:

This release adds full support for reading and writing HEIF image sequences.

libheif will now encode HEIF image sequences with all included codecs.

Since HEIF image sequences are very similar to MP4 videos, this new version is also 
capable of decoding most MP4 videos (without audio, of course).

heif-enc documentation for sequence encoding
API documentation for reading and writing sequences

Other major changes:

    Support for image sequences with alpha channels. For most codecs, the alpha channel 
will be stored in a separate, auxiliary, monochrome track. For ISO/IEC 23001-17 
(uncompressed) streams, the alpha channel is stored in the main video track.
    Support for sequence track edit lists to define the number of sequence repetitions 
(without actually repeating the video data).
    New encoder plugin using x264 to write H.264-compressed video streams and images.
    The FFmpeg decoder plugin will now decode both H.265 and H.264.
    Support for HEIF text items and language properties (thanks to @bradh).

CVEs fixed:

    CVE-2025-68431

CVE-2025-68431 is a heap buffer over-read, and which causes a crash and possibly information disclosure. It's rated as 6.5/10 Moderate

comment:2 by Joe Locash, 9 months ago

Updating this needs a change to libaom.

In libaom we remove the static library but some cmake files still reference that file.

This change to libaom should fix it:

sed -i 's/aom aom_static/aom/' build/cmake/aom_install.cmake

With the change removing /usr/lib/libaom.a is no longer needed and this version will now build.

comment:3 by Douglas R. Reno, 9 months ago

Owner: changed from blfs-book to Douglas R. Reno
Status: new → assigned

comment:4 by Douglas R. Reno, 9 months ago

Summary: libheif-1.21.0 → libheif-1.21.1

comment:5 by Douglas R. Reno, 9 months ago

"This patch release only fixes a build error with some GCC versions because of a missing #include."

comment:6 by Douglas R. Reno, 9 months ago

Resolution: → fixed
Status: assigned → closed

comment:7 by Bruce Dubbs, 8 months ago

Milestone: 12.5 → 13.0

Milestone renamed

Note: See TracTickets for help on using tickets.