Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-06541
HistoryNov 23, 2020 - 12:00 a.m.

libsixel unvalidated array indexing vulnerability

2020-11-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
libsixel
vulnerability
array indexing
gif_out_code
fromgif.c
cnvd

EPSS

0.001

Percentile

34.7%

libsixel is a SIXEL encoder/decoder implementation. libsixel 1.8.6 is vulnerable to an unvalidated array indexing vulnerability. An attacker could exploit this vulnerability to cause out-of-bounds access to the gif_out_code function in fromgif.c.

EPSS

0.001

Percentile

34.7%