Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-29977

Опубликовано: 11 мая 2022
Источник: debian

Описание

There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsixelunfixedpackage
libsixelpostponedtrixiepackage
libsixelpostponedbookwormpackage
libsixelno-dsabullseyepackage
libsixelno-dsabusterpackage
libsixelno-dsastretchpackage

Примечания

  • https://github.com/libsixel/libsixel/issues/62

  • Previously also reported in https://github.com/saitoha/libsixel/issues/165

  • https://github.com/saitoha/libsixel/issues/165#issuecomment-3156339204

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.

CVSS3: 6.5
nvd
больше 3 лет назад

There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.

CVSS3: 6.5
github
больше 3 лет назад

There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.