CVE-2020-21048

An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:libsixel_project:libsixel:*:*:*:*:*:*:*:*

History

24 Sep 2021, 17:05

Type Values Removed Values Added
CPE cpe:2.3:a:libsixel_project:libsixel:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 6.5
References (MISC) https://github.com/saitoha/libsixel/blob/master/ChangeLog - (MISC) https://github.com/saitoha/libsixel/blob/master/ChangeLog - Release Notes, Third Party Advisory
References (MISC) https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037 - (MISC) https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037 - Patch, Third Party Advisory
References (MISC) https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad - (MISC) https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad - Broken Link
References (MISC) https://github.com/saitoha/libsixel/issues/73 - (MISC) https://github.com/saitoha/libsixel/issues/73 - Exploit, Issue Tracking, Patch, Third Party Advisory
References (MISC) https://github.com/saitoha/libsixel/releases/tag/v1.8.4 - (MISC) https://github.com/saitoha/libsixel/releases/tag/v1.8.4 - Release Notes, Third Party Advisory

14 Sep 2021, 16:20

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-14 16:15

Updated : 2024-02-04 22:08


NVD link : CVE-2020-21048

Mitre link : CVE-2020-21048

CVE.ORG link : CVE-2020-21048


JSON object : View

Products Affected

libsixel_project

  • libsixel