CVE-2023-43898: Null Pointer Dereference
Published Oct 3, 2023
·Updated
Nothings stb 2.28 was discovered to contain a Null Pointer Dereference via the function stbiconvertformat. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted pic file.
Affected Software
2 affected components
Nothings stb=2.28
Nothings Stb Image.h=2.28
Remediation
Patch Available
Patch Available
Event History
Oct 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-43898.
2
What is the affected software of this vulnerability?
The affected software of this vulnerability is Nothings stb version 2.28.
3
What is the severity of CVE-2023-43898?
The severity of CVE-2023-43898 is medium.
4
What is the CWE ID of this vulnerability?
The CWE ID of this vulnerability is 476.
5
How can this vulnerability be exploited?
This vulnerability can be exploited by causing a Denial of Service (DoS) via a crafted pic file.