PT-2018-15076 · Libsixel+1 · Libsixel+1

Shuitao Gan

·

Published

2018-11-30

·

Updated

2024-12-20

·

CVE-2018-19761

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions libsixel version 1.8.2
Description The issue is related to an illegal address access in the sixel decode raw impl function within the fromsixel.c file of libsixel. This will cause a denial of service.
Recommendations For libsixel version 1.8.2, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

DoS

Out of bounds Read

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2902
ALT-PU-2024-17256
CVE-2018-19761

Affected Products

Alt Linux
Libsixel