First published: Fri Apr 08 2022(Updated: )
libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsixel Project Libsixel | =1.8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-27046 is high with a severity value of 8.8.
CVE-2022-27046 affects libsixel version 1.8.6.
CVE-2022-27046 is a Heap Use After Free vulnerability.
The Heap Use After Free vulnerability in CVE-2022-27046 can be exploited by manipulating memory after it has been freed.
At the time of writing, there is no fix available for CVE-2022-27046. It is recommended to update to a version of libsixel that is not affected.