Vulnerabilities > Libsixel Project > Libsixel > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-05-11 CVE-2022-29977 Reachable Assertion vulnerability in Libsixel Project Libsixel 1.8.6
There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6.
network
low complexity
libsixel-project CWE-617
6.5
2022-05-11 CVE-2022-29978 Incorrect Calculation vulnerability in Libsixel Project Libsixel 1.8.6
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6.
network
low complexity
libsixel-project CWE-682
6.5
2022-03-26 CVE-2022-27938 Reachable Assertion vulnerability in Libsixel Project Libsixel 2.19
stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw.
local
low complexity
libsixel-project CWE-617
5.5
2022-02-19 CVE-2021-46700 Double Free vulnerability in Libsixel Project Libsixel 1.8.6
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
network
low complexity
libsixel-project CWE-415
6.5
2022-01-25 CVE-2021-45340 NULL Pointer Dereference vulnerability in Libsixel Project Libsixel
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file.
network
low complexity
libsixel-project CWE-476
6.5
2021-09-14 CVE-2020-21048 Unspecified vulnerability in Libsixel Project Libsixel
An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
network
low complexity
libsixel-project
6.5
2021-09-14 CVE-2020-21049 Out-of-bounds Read vulnerability in Libsixel Project Libsixel
An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.
network
low complexity
libsixel-project CWE-125
6.5
2021-09-14 CVE-2020-21050 Out-of-bounds Write vulnerability in Libsixel Project Libsixel
Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c.
network
low complexity
libsixel-project CWE-787
6.5
2021-08-10 CVE-2020-21677 Out-of-bounds Write vulnerability in Libsixel Project Libsixel 1.8.4
A heap-based buffer overflow in the sixel_encoder_output_without_macro function in encoder.c of Libsixel 1.8.4 allows attackers to cause a denial of service (DOS) via converting a crafted PNG file into Sixel format.
network
low complexity
libsixel-project CWE-787
6.5
2020-11-20 CVE-2020-19668 Out-of-bounds Read vulnerability in Libsixel Project Libsixel 1.8.6
Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.
network
low complexity
libsixel-project CWE-125
6.5