Vulnerabilities > Libsixel Project > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-11 | CVE-2022-29977 | Reachable Assertion vulnerability in Libsixel Project Libsixel 1.8.6 There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. | 6.5 |
2022-05-11 | CVE-2022-29978 | Incorrect Calculation vulnerability in Libsixel Project Libsixel 1.8.6 There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. | 6.5 |
2022-03-26 | CVE-2022-27938 | Reachable Assertion vulnerability in Libsixel Project Libsixel 2.19 stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw. | 5.5 |
2022-02-19 | CVE-2021-46700 | Double Free vulnerability in Libsixel Project Libsixel 1.8.6 In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free. | 6.5 |
2022-01-25 | CVE-2021-45340 | NULL Pointer Dereference vulnerability in Libsixel Project Libsixel In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file. | 6.5 |
2021-09-14 | CVE-2020-21048 | Unspecified vulnerability in Libsixel Project Libsixel An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file. | 6.5 |
2021-09-14 | CVE-2020-21049 | Out-of-bounds Read vulnerability in Libsixel Project Libsixel An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file. | 6.5 |
2021-09-14 | CVE-2020-21050 | Out-of-bounds Write vulnerability in Libsixel Project Libsixel Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c. | 6.5 |
2021-08-10 | CVE-2020-21677 | Out-of-bounds Write vulnerability in Libsixel Project Libsixel 1.8.4 A heap-based buffer overflow in the sixel_encoder_output_without_macro function in encoder.c of Libsixel 1.8.4 allows attackers to cause a denial of service (DOS) via converting a crafted PNG file into Sixel format. | 6.5 |
2020-11-20 | CVE-2020-19668 | Out-of-bounds Read vulnerability in Libsixel Project Libsixel 1.8.6 Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6. | 6.5 |