First published: Sat Feb 19 2022(Updated: )
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel | =1.8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2021-46700.
The severity of CVE-2021-46700 is medium (6.5).
The affected software version is libsixel 1.8.6.
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-415.
To fix CVE-2021-46700, you should update to a version of libsixel that is not affected by the vulnerability.