CVE-2026-84447: Derived-image indirect reference chains and tiled offsets bypass decode caching and MemoryHandle
limits, causing CPU/memory amplification DoS (bsc#1279446).
CVE-2026-84448: Heap out-of-bounds read in the inline-mask region API (bsc#1279449).
CVE-2026-84450: image item with clap property and an ispe declaring a dimension greater than INT32_MAX + 1 can
lead to a crash via an abort (bsc#1280002).
CVE-2026-84451: crafted HEIF file advertising a 4096 x 4096 uncompressed tile grid can cause an out-of-bounds read due
to an integer overflow (bsc#1280001).
Out-of-bounds read and write in derived-item and pixel-plane handling (bsc#1279444).