ID CVE-2018-19756
Description There is a heap-based buffer over-read at stb_image.h (function: stbi__tga_load) in libsixel 1.8.2 that will cause a denial of service.
CVSS
  • Score: 4.3
  • Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P
  • Availability: PARTIAL
  • Confidentiality: not affected
  • Integrity: not affected
CWE-ID CWE-125
Last Modified Dec. 27, 2018
Available Solutions No solutions were found

CPE-ID

Application Name/CPE-IDVendorProductVersionList of Vulnerabilities
Libsixel_project Libsixel 1.8.2 libsixel project libsixel 1.8.2 9 Vulnerabilties for Libsixel_project Libsixel 1.8.2
Similar vulnerabilities

Pre-Condition

<set operator="and">
    <prop key="application" value="cpe:/a:libsixel_project:libsixel:1.8.2"/>
    <prop key="program_influence" value="input"/>
    <prop key="range" value="remote"/>
</set>

								

Post-Condition

<set operator="and">
    <prop key="application" value="cpe:/a:libsixel_project:libsixel:1.8.2"/>
  <set operator="or">
      <prop key="program_influence" value="input"/>
      <prop key="program_influence" value="existence"/>
  </set>
    <prop key="range" value="remote"/>
</set>