CVE-2021-40656: Buffer Overflow
Published Apr 8, 2022
·Updated
libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
Affected Software
2 affected components
Libsixel Project Libsixel<1.10
Libsixel libsixel<1.10.0
Event History
Apr 8, 2022
CVE Published
via MITRE·03:09 PM
Data Sourced
via MITRE·03:09 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-40656?
CVE-2021-40656 is a vulnerability in libsixel before version 1.10 that allows for a buffer overflow in the libsixel/src/quant.c file at line 867.
2
What is the severity of CVE-2021-40656?
CVE-2021-40656 has a severity rating of 8.8 (high).
3
How does CVE-2021-40656 affect the libsixel software?
CVE-2021-40656 affects all versions of the libsixel software up to but not including version 1.10.
4
How can I fix the CVE-2021-40656 vulnerability?
To fix the CVE-2021-40656 vulnerability, it is recommended to update the libsixel software to version 1.10 or later.
5
Where can I find more information about CVE-2021-40656?
More information about CVE-2021-40656 can be found at the following reference: https://github.com/libsixel/libsixel/issues/25