Vulnerabilities
Vulnerable Software
There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
CVSS Score
6.5
EPSS Score
0.003
Published
2022-05-11
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
CVSS Score
6.5
EPSS Score
0.003
Published
2022-05-11
libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-08
libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-08
libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-08
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
CVSS Score
6.5
EPSS Score
0.002
Published
2022-02-19
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file.
CVSS Score
6.5
EPSS Score
0.002
Published
2022-01-25
Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows attackers to cause a Denial of Service (DoS).
CVSS Score
7.5
EPSS Score
0.004
Published
2021-04-14
Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.
CVSS Score
6.5
EPSS Score
0.002
Published
2020-11-20
load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.
CVSS Score
6.5
EPSS Score
0.005
Published
2020-04-12


Contact Us

Shodan ® - All rights reserved