First published: Sun Dec 08 2019(Updated: )
An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_decode_raw_impl at fromsixel.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel | =1.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-19637.
The severity of CVE-2019-19637 is critical with a severity value of 9.8.
The software version affected by CVE-2019-19637 is libsixel 1.8.2.
The Common Weakness Enumeration (CWE) ID for CVE-2019-19637 is CWE-190.
Yes, you can find more information about CVE-2019-19637 at this link: https://github.com/saitoha/libsixel/issues/105