CVE-2016-9969: Double Free
Published May 23, 2019
·Updated
In libwebp 0.5.1, there is a double free bug in libwebpmux.
Affected Software
1 affected component
webmproject Libwebp=0.5.1
Event History
May 23, 2019
CVE Published
via MITRE·05:37 PM
Data Sourced
via MITRE·05:37 PM
Description
Frequently Asked Questions
1
What is CVE-2016-9969?
CVE-2016-9969 is a vulnerability in libwebp 0.5.1 that allows for a double free bug in libwebpmux.
2
What is the severity of CVE-2016-9969?
The severity of CVE-2016-9969 is high, with a severity score of 7.5.
3
How can I fix CVE-2016-9969?
To fix CVE-2016-9969, update to a version of libwebp that is higher than 0.5.1.
4
Where can I find more information about CVE-2016-9969?
You can find more information about CVE-2016-9969 on the Chromium bug tracker: https://bugs.chromium.org/p/webp/issues/detail?id=322.