PT-2018-13814 · Mozilla+2 · Emscripten+2

Tianxiaoguo

·

Published

2018-09-12

·

Updated

2025-12-04

·

CVE-2018-16981

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions stb image.h version 2.19
Description The issue is a heap-based buffer overflow in the stbi out gif code function. This problem affects products that use stb image.h, including catimg and Emscripten.
Recommendations For stb image.h version 2.19, consider updating to a newer version to resolve the issue. As a temporary workaround, consider restricting the use of the stbi out gif code function until a patch is available.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2018-16981
DLA-3305-1
USN-7913-1

Affected Products

Emscripten
Linuxmint
Ubuntu