CVE-2018-19762: Buffer Overflow
Published Nov 30, 2018
·Updated
There is a heap-based buffer overflow at fromsixel.c (function: imagebufferresize) in libsixel 1.8.2 that will cause a denial of service or possibly unspecified other impact.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.2
saitoha libsixel=1.8.2
Event History
Nov 30, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Data Sourced
via NVD·03:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2018-19762.
2
What is the description of the vulnerability?
There is a heap-based buffer overflow at fromsixel.c (function: image_buffer_resize) in libsixel 1.8.2 that will cause a denial of service or possibly unspecified other impact.
3
What software version is affected by this vulnerability?
The software version affected is libsixel 1.8.2.
4
What is the severity of this vulnerability?
The severity of this vulnerability is high with a CVSS score of 7.8 (CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H).
5
Is there a fix available for this vulnerability?
At the time of writing, there is no information available regarding a fix for this vulnerability. It is recommended to closely monitor the vendor's website for any updates or patches.