Vulnerabilities > Nothings > High

DATE CVE VULNERABILITY TITLE RISK
2020-01-08 CVE-2020-6617 Reachable Assertion vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int.
network
low complexity
nothings CWE-617
8.8
2019-12-13 CVE-2019-19777 Out-of-bounds Read vulnerability in multiple products
stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has a heap-based buffer over-read in stbi__load_main.
network
low complexity
libsixel-project nothings CWE-125
8.8
2018-09-12 CVE-2018-16981 Out-of-bounds Write vulnerability in multiple products
stb stb_image.h 2.19, as used in catimg, Emscripten, and other products, has a heap-based buffer overflow in the stbi__out_gif_code function.
network
low complexity
nothings debian CWE-787
8.8