Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-11721

Опубликовано: 12 апр. 2020
Источник: debian
EPSS Низкий

Описание

load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsixelfixed1.10.3-1package
libsixelno-dsabullseyepackage
libsixelno-dsabusterpackage
libsixelno-dsastretchpackage
libsixelno-dsajessiepackage

Примечания

  • https://github.com/saitoha/libsixel/issues/134

  • https://github.com/libsixel/libsixel/issues/9

  • https://github.com/libsixel/libsixel/pull/10

  • https://github.com/libsixel/libsixel/commit/e71aacc97b5f756948b13c1228877d29395c7b55 (v1.9.0)

  • Since 1.10.3-1 the Debian package moved from https://github.com/saitoha/libsixel to https://github.com/libsixel/libsixel fork

EPSS

Процентиль: 64%
0.00468
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 6 лет назад

load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.

CVSS3: 6.5
nvd
почти 6 лет назад

load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.

github
больше 3 лет назад

load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.

EPSS

Процентиль: 64%
0.00468
Низкий