CVE-2018-19756 (NVD)

2018-11-30

There is a heap-based buffer over-read at stb_image.h (function: stbi__tga_load) in libsixel 1.8.2 that will cause a denial of service.

Products Libsixel
Type Out-of-bounds Read (CWE-125)
First patch - None (likely due to unavailable code)
Links https://bugzilla.redhat.com/show_bug.cgi?id=1649198