Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Libsixel
(Libsixel_project)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 41 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-03-26 | CVE-2022-27938 | stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw. | Libsixel | 5.5 | ||
2022-04-08 | CVE-2021-41715 | libsixel 1.10.0 is vulnerable to Use after free in libsixel/src/dither.c:379. | Libsixel | 8.8 | ||
2022-04-08 | CVE-2022-27044 | libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876. | Libsixel | 8.8 | ||
2022-04-08 | CVE-2022-27046 | libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388. | Libsixel | 8.8 | ||
2022-04-08 | CVE-2021-40656 | libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867. | Libsixel | 8.8 | ||
2022-05-11 | CVE-2022-29977 | There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file. | Libsixel | 6.5 | ||
2022-05-11 | CVE-2022-29978 | There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file. | Libsixel | 6.5 | ||
2019-12-27 | CVE-2019-20023 | A memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4. | Libsixel | 6.5 | ||
2018-11-30 | CVE-2018-19762 | There is a heap-based buffer overflow at fromsixel.c (function: image_buffer_resize) in libsixel 1.8.2 that will cause a denial of service or possibly unspecified other impact. | Libsixel | 7.8 | ||
2020-04-12 | CVE-2020-11721 | load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service. | Libsixel | N/A |