Vulnerabilities > Libsixel Project

DATE CVE VULNERABILITY TITLE RISK
2022-05-11 CVE-2022-29977 Reachable Assertion vulnerability in Libsixel Project Libsixel 1.8.6
There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6.
4.3
2022-05-11 CVE-2022-29978 Incorrect Calculation vulnerability in Libsixel Project Libsixel 1.8.6
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6.
4.3
2022-04-08 CVE-2021-40656 Out-of-bounds Write vulnerability in Libsixel Project Libsixel
libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
6.8
2022-04-08 CVE-2021-41715 Use After Free vulnerability in Libsixel Project Libsixel 1.10.0
libsixel 1.10.0 is vulnerable to Use after free in libsixel/src/dither.c:379.
6.8
2022-04-08 CVE-2022-27044 Out-of-bounds Write vulnerability in Libsixel Project Libsixel 1.8.6
libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
6.8
2022-04-08 CVE-2022-27046 Use After Free vulnerability in Libsixel Project Libsixel 1.8.6
libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
6.8
2022-03-26 CVE-2022-27938 Reachable Assertion vulnerability in Libsixel Project Libsixel 2.19
stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw.
4.3
2022-03-10 CVE-2020-36123 Double Free vulnerability in Libsixel Project Libsixel 1.8.6
saitoha libsixel v1.8.6 was discovered to contain a double free via the component sixel_chunk_destroy at /root/libsixel/src/chunk.c.
6.8
2022-02-19 CVE-2021-46700 Double Free vulnerability in Libsixel Project Libsixel 1.8.6
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
4.3
2022-01-25 CVE-2021-45340 NULL Pointer Dereference vulnerability in Libsixel Project Libsixel
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file.
4.3