Vulnerabilities
Vulnerable Software
A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation results in stack-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The patch is identified as 316c086e79d66b62c0c4bc66229ee894e4fdb7d1. Applying a patch is advised to resolve this issue.
CVSS Score
5.3
EPSS Score
0.0
Published
2025-08-21
libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
CVSS Score
8.8
EPSS Score
0.004
Published
2022-04-08
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file.
CVSS Score
6.5
EPSS Score
0.002
Published
2022-01-25
An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
CVSS Score
6.5
EPSS Score
0.004
Published
2021-09-14
An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.
CVSS Score
6.5
EPSS Score
0.004
Published
2021-09-14
Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c.
CVSS Score
6.5
EPSS Score
0.009
Published
2021-09-14
A heap-based buffer overflow was discovered in image_buffer_resize in fromsixel.c in libsixel before 1.8.4.
CVSS Score
6.5
EPSS Score
0.005
Published
2019-12-27
An invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.
CVSS Score
6.5
EPSS Score
0.004
Published
2019-12-27
A memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4.
CVSS Score
6.5
EPSS Score
0.004
Published
2019-12-27


Contact Us

Shodan ® - All rights reserved