Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libsixel vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2022-29977
There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Libsixel Project Libsixel 1.8.6
6.5
CVSSv3
CVE-2022-29978
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Libsixel Project Libsixel 1.8.6
8.8
CVSSv3
CVE-2021-40656
libsixel prior to 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
Libsixel Project Libsixel
8.8
CVSSv3
CVE-2021-41715
libsixel 1.10.0 is vulnerable to Use after free in libsixel/src/dither.c:379.
Libsixel Project Libsixel 1.10.0
8.8
CVSSv3
CVE-2022-27044
libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
Libsixel Project Libsixel 1.8.6
8.8
CVSSv3
CVE-2022-27046
libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
Libsixel Project Libsixel 1.8.6
5.5
CVSSv3
CVE-2022-27938
stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw.
Libsixel Project Libsixel 2.19
6.5
CVSSv3
CVE-2021-46700
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
Libsixel Project Libsixel 1.8.6
6.5
CVSSv3
CVE-2021-45340
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows malicious users to cause a denial of service (DOS) via a crafted PICT file.
Libsixel Project Libsixel
8.8
CVSSv3
CVE-2020-21547
Libsixel 1.8.2 contains a heap-based buffer overflow in the dither_func_fs function in tosixel.c.
Libsixel Project Libsixel 1.8.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »