First published: Fri Nov 30 2018(Updated: )
There is a NULL pointer dereference at function sixel_helper_set_additional_message (status.c) in libsixel 1.8.2 that will cause a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel Project Libsixel | =1.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2018-19757.
The severity of CVE-2018-19757 is medium.
The affected software of CVE-2018-19757 is Libsixel version 1.8.2.
CVE-2018-19757 is a NULL pointer dereference vulnerability in the libsixel library, version 1.8.2, which can lead to a denial of service.
Yes, a fix for CVE-2018-19757 is available. It is recommended to update to a version of Libsixel that is not affected by this vulnerability.