CVE-2022-29977: Medium severity Libsixel Project Libsixel vulnerability
Published May 11, 2022
·Updated
There is an assertion failure error in stbijpeghuffdecode, stbimage.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Affected Software
2 affected components
Libsixel Project Libsixel=1.8.6
saitoha libsixel=1.8.6
Event History
May 11, 2022
CVE Published
via MITRE·01:10 PM
Data Sourced
via MITRE·01:10 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-29977.
2
What is the title of the vulnerability?
The title of the vulnerability is 'There is an assertion failure error in stbi__jpeg_huff_decode stb_image.h:1894 in libsixel img2sixel…'.
3
What is the affected software?
The affected software is Libsixel version 1.8.6.
4
What is the severity of CVE-2022-29977?
The severity of CVE-2022-29977 is medium (6.5).
5
How can remote attackers exploit CVE-2022-29977?
Remote attackers can exploit CVE-2022-29977 by leveraging the vulnerability to cause a denial-of-service via a crafted JPEG file.