Vulnerabilities > Nothings > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-08 CVE-2020-6621 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in ttUSHORT.
network
nothings CWE-125
6.8
2020-01-08 CVE-2020-6620 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_get8.
network
nothings CWE-125
6.8
2020-01-08 CVE-2020-6619 Reachable Assertion vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__buf_seek.
network
nothings CWE-617
6.8
2020-01-08 CVE-2020-6618 Out-of-bounds Read vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__find_table.
network
nothings CWE-125
6.8
2020-01-08 CVE-2020-6617 Reachable Assertion vulnerability in Nothings STB Truetype.H 1.22
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int.
network
nothings CWE-617
6.8
2019-12-29 CVE-2019-20056 Reachable Assertion vulnerability in Nothings STB Image.H 2.23
stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has an assertion failure in stbi__shiftsigned.
network
nothings CWE-617
4.3
2019-12-13 CVE-2019-19777 Out-of-bounds Read vulnerability in multiple products
stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has a heap-based buffer over-read in stbi__load_main.
6.8