5
CVSSv2

CVE-2020-36120

Published: 14/04/2021 Updated: 16/04/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows malicious users to cause a Denial of Service (DoS).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libsixel project libsixel 1.8.6

Vendor Advisories

Debian Bug report logs - #988159 CVE-2020-36120 Package: src:libsixel; Maintainer for src:libsixel is NOKUBI Takatsugu <knok@daionetgrjp>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Thu, 6 May 2021 18:09:01 UTC Severity: important Tags: security Forwarded to githubcom/saitoha/libsixel/issu ...