First published: Sun Dec 08 2019(Updated: )
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function load_pnm at frompnm.c, due to an integer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel Project Libsixel | =1.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-19638.
The severity of CVE-2019-19638 is critical with a CVSS score of 9.8.
The affected software of CVE-2019-19638 is Libsixel 1.8.2.
CVE-2019-19638 is a heap-based buffer overflow vulnerability in libsixel 1.8.2, which can be exploited due to an integer overflow.
Yes, a fix may be available. It is recommended to check the official source or vendor for any available patches or updates.