CVE-2020-21547: Buffer Overflow
Published Sep 17, 2021
·Updated
Libsixel 1.8.2 contains a heap-based buffer overflow in the ditherfuncfs function in tosixel.c.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.2
saitoha libsixel=1.8.2
Remediation
Patch Available
Event History
Sep 17, 2021
CVE Published
via MITRE·08:34 PM
Data Sourced
via MITRE·08:34 PM
Description
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-21547?
CVE-2020-21547 is a vulnerability in Libsixel 1.8.2 that allows for a heap-based buffer overflow.
2
What is the severity of CVE-2020-21547?
The severity of CVE-2020-21547 is high, with a severity score of 8.8.
3
How can I fix the CVE-2020-21547 vulnerability?
To fix the CVE-2020-21547 vulnerability, update Libsixel to version 1.8.3 or later.
4
What is the CWE for CVE-2020-21547?
The CWE for CVE-2020-21547 is CWE-119 and CWE-787.
5
Where can I find more information about CVE-2020-21547?
You can find more information about CVE-2020-21547 at the following reference: [GitHub Issue](https://github.com/saitoha/libsixel/issues/114)