CVE-2021-46700: Double Free
Published Feb 19, 2022
·Updated
In libsixel 1.8.6, sixelencoderoutputwithoutmacro (called from sixelencoderencodeframe in encoder.c) has a double free.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.6
saitoha libsixel=1.8.6
Event History
Feb 19, 2022
CVE Published
via MITRE·06:22 PM
Data Sourced
via MITRE·06:22 PM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-46700.
2
What is the severity of CVE-2021-46700?
The severity of CVE-2021-46700 is medium (6.5).
3
What is the affected software version?
The affected software version is libsixel 1.8.6.
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-415.
5
How can I fix CVE-2021-46700?
To fix CVE-2021-46700, you should update to a version of libsixel that is not affected by the vulnerability.