CVE-2019-20094: Buffer Overflow
Published Dec 30, 2019
·Updated
An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gifinitframe at fromgif.c.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.4
saitoha libsixel=1.8.4
Event History
Dec 30, 2019
CVE Published
via MITRE·03:47 AM
Data Sourced
via MITRE·03:47 AM
Description
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue in libsixel?
The vulnerability ID of this issue in libsixel is CVE-2019-20094.
2
What is the severity of CVE-2019-20094?
The severity of CVE-2019-20094 is high.
3
What is the affected software of CVE-2019-20094?
The affected software of CVE-2019-20094 is libsixel version 1.8.4.
4
What is the description of CVE-2019-20094?
CVE-2019-20094 is a heap-based buffer overflow vulnerability in the function gif_init_frame at fromgif.c in libsixel 1.8.4.
5
Is there a fix available for CVE-2019-20094?
Yes, there is a fix available for CVE-2019-20094. It is recommended to update to a newer version of libsixel that includes the fix.