CVE-2019-19638 (NVD)

2019-12-08

An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function load_pnm at frompnm.c, due to an integer overflow.

Products Libsixel
Type Integer Overflow or Wraparound (CWE-190)
Out-of-bounds Write (CWE-787)
First patch - None (likely due to unavailable code)
Links https://github.com/saitoha/libsixel/issues/102