Vulnerability index

Browse CVEs

44 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libsixel HIGH 7.8
CVE-2026-44636

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. From to 1.8.7-r1, signed integer overflow in sixel_encode_highcolor's…

Fix: 1.8.7-r2+
Fix from $1,950 2026-05-14
Libsixel HIGH 7.1
CVE-2026-44637

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. From to 1.8.7-r1, a signed integer overflow in the SIXEL parser's ima…

Fix: 1.8.7-r2+
Fix from $1,950 2026-05-14
Libsixel HIGH 7.8
CVE-2026-33023

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built with the --with-gdk-pixbuf2 op…

Fix: after 1.8.7
Fix from $1,950 2026-04-14
Libsixel HIGH 7.3
CVE-2026-33021

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a use-after-free vulnerability in six…

Fix: 1.8.7-r1+
Fix from $1,950 2026-04-14
Libsixel HIGH 7.1
CVE-2026-33019

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow leading to an out…

Fix: 1.8.7-r1+
Fix from $1,950 2026-04-14
Libsixel HIGH 7.1
CVE-2026-33020

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow which leads to a …

Fix: 1.8.7-r1+
Fix from $1,950 2026-04-14
Libsixel HIGH 7.0
CVE-2026-33018

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a Use-After-Free vulnerability via th…

Fix: 1.8.7-r1+
Fix from $1,950 2026-04-14
Libsixel HIGH 7.8
CVE-2025-9300

A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.…

Fix: 1.8.7+
Fix from $1,950 2025-08-21
Libsixel MEDIUM 6.5
CVE-2022-29977

There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vul…

No fix yet
Fix from $1,600 2022-05-11
Libsixel MEDIUM 6.5
CVE-2022-29978

There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote attackers could leverage this…

No fix yet
Fix from $1,600 2022-05-11
Libsixel HIGH 8.8
CVE-2022-27044

libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.

No fix yet
Fix from $1,950 2022-04-08
Libsixel HIGH 8.8
CVE-2022-27046

libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.

No fix yet
Fix from $1,950 2022-04-08
Libsixel MEDIUM 6.5
CVE-2021-46700

In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.

No fix yet
Fix from $1,600 2022-02-19
Libsixel HIGH 8.8
CVE-2020-21547

Libsixel 1.8.2 contains a heap-based buffer overflow in the dither_func_fs function in tosixel.c.

Patch available
Fix from $1,950 2021-09-17
Libsixel HIGH 8.8
CVE-2020-21548

Libsixel 1.8.3 contains a heap-based buffer overflow in the sixel_encode_highcolor function in tosixel.c.

Patch available
Fix from $1,950 2021-09-17
Libsixel MEDIUM 6.5
CVE-2020-21048

An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.

Fix: 1.8.4+
Fix from $1,600 2021-09-14
Libsixel MEDIUM 6.5
CVE-2020-21049

An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.

Fix: 1.8.5+
Fix from $1,600 2021-09-14
Libsixel MEDIUM 6.5
CVE-2020-21050

Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c.

Fix: 1.8.3+
Fix from $1,600 2021-09-14
Libsixel MEDIUM 6.5
CVE-2020-21677

A heap-based buffer overflow in the sixel_encoder_output_without_macro function in encoder.c of Libsixel 1.8.4 allows attackers to cause a denial of …

Patch available
Fix from $1,600 2021-08-10
Libsixel HIGH 7.5
CVE-2020-36120

Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows attackers to cause a Denial of Service (DoS).

No fix yet
Fix from $1,950 2021-04-14
Libsixel MEDIUM 6.5
CVE-2020-19668

Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.

No fix yet
Fix from $1,600 2020-11-20
Libsixel MEDIUM 6.5
CVE-2020-11721

load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of ser…

No fix yet
Fix from $1,600 2020-04-12
Libsixel HIGH 8.8
CVE-2019-20205

libsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.

No fix yet
Fix from $1,950 2020-01-02
Libsixel HIGH 8.8
CVE-2019-20140

An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_out_code at fromgif.c.

Patch available
Fix from $1,950 2019-12-30
Libsixel HIGH 8.8
CVE-2019-20094

An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_init_frame at fromgif.c.

No fix yet
Fix from $1,950 2019-12-30
Libsixel MEDIUM 6.5
CVE-2019-20024

A heap-based buffer overflow was discovered in image_buffer_resize in fromsixel.c in libsixel before 1.8.4.

Fix: 1.8.4+
Fix from $1,600 2019-12-27
Libsixel MEDIUM 6.5
CVE-2019-20022

An invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.

Fix: 1.8.3+
Fix from $1,600 2019-12-27
Libsixel MEDIUM 6.5
CVE-2019-20023

A memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4.

Fix: 1.8.4+
Fix from $1,600 2019-12-27
Libsixel HIGH 8.8
CVE-2019-19778

An issue was discovered in libsixel 1.8.2. There is a heap-based buffer over-read in the function load_sixel at loader.c.

No fix yet
Fix from $1,950 2019-12-13
Libsixel CRITICAL 9.8
CVE-2019-19637

An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_decode_raw_impl at fromsixel.c.

Mitigation only
Fix from $2,300 2019-12-08