First published: Tue Oct 24 2023(Updated: )
Double Free vulnerability in Nothings Stb Image.h v.2.28 allows a remote attacker to cause a denial of service via a crafted file to the stbi_load_gif_main function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nothings Stb Image.h | =2.28 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-43281.
The severity of CVE-2023-43281 is medium with a severity value of 6.5.
The version 2.28 of Nothings Stb Image.h is affected by CVE-2023-43281.
A remote attacker can exploit CVE-2023-43281 by sending a crafted file to the stbi_load_gif_main function.
Yes, here are the references for CVE-2023-43281: [Reference 1](https://gist.github.com/peccc/d8761f6ac45ad55cbd194dd7e6fdfdac), [Reference 2](https://github.com/peccc/double-stb).