CVE-2018-19757: Null Pointer Dereference
Published Nov 30, 2018
·Updated
There is a NULL pointer dereference at function sixelhelpersetadditionalmessage (status.c) in libsixel 1.8.2 that will cause a denial of service.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.2
saitoha libsixel=1.8.2
Event History
Nov 30, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Data Sourced
via NVD·03:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-19757.
2
What is the severity of CVE-2018-19757?
The severity of CVE-2018-19757 is medium.
3
What is the affected software of CVE-2018-19757?
The affected software of CVE-2018-19757 is Libsixel version 1.8.2.
4
What is the description of CVE-2018-19757?
CVE-2018-19757 is a NULL pointer dereference vulnerability in the libsixel library, version 1.8.2, which can lead to a denial of service.
5
Is there a fix available for CVE-2018-19757?
Yes, a fix for CVE-2018-19757 is available. It is recommended to update to a version of Libsixel that is not affected by this vulnerability.