Vulnerabilities > CVE-2019-3573 - Infinite Loop vulnerability in Libsixel Project Libsixel 1.8.2

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
libsixel-project
CWE-835

Summary

In libsixel v1.8.2, there is an infinite loop in the function sixel_decode_raw_impl() in the file fromsixel.c, as demonstrated by sixel2png.

Vulnerable Configurations

Part Description Count
Application
Libsixel_Project
1