First published: Fri Dec 13 2019(Updated: )
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer over-read in the function load_sixel at loader.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel Project Libsixel | =1.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-19778 is high.
The affected software for CVE-2019-19778 is Libsixel version 1.8.2.
Yes, there is a fix available for CVE-2019-19778. Please refer to the official Libsixel project for the fix.
The Common Weakness Enumeration (CWE) ID for CVE-2019-19778 is CWE-125.
More information about CVE-2019-19778 can be found at the following reference: [GitHub Issue](https://github.com/saitoha/libsixel/issues/110)