VendorsSaitohalibsixelall versions
Vulnerabilities

Saitoha Libsixel

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

48CVEs
CVE-2019-19637
An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_decode_raw_impl at fromsixel.c.
Published 2019-12-08 · Modified
9.8EPSS 0.012
CVE-2019-19636
An issue was discovered in libsixel 1.8.2. There is an integer overflow in the function sixel_encode_body at tosixel.c.
Published 2019-12-08 · Modified
9.8EPSS 0.012
CVE-2019-19635
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function sixel_decode_raw_impl at fromsixel.c.
Published 2019-12-08 · Modified
9.8EPSS 0.012
CVE-2019-19638
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer overflow in the function load_pnm at frompnm.c, due to an integer overflow.
Published 2019-12-08 · Modified
9.8EPSS 0.012
CVE-2019-19777
stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has a heap-based buffer over-read in stbi__load_main.
Published 2019-12-13 · Modified
8.8EPSS 0.014
CVE-2019-19778
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer over-read in the function load_sixel at loader.c.
Published 2019-12-13 · Modified
8.8EPSS 0.014
CVE-2019-20140
An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_out_code at fromgif.c.
Published 2019-12-30 · Modified
8.8EPSS 0.011
CVE-2020-21548
Libsixel 1.8.3 contains a heap-based buffer overflow in the sixel_encode_highcolor function in tosixel.c.
Published 2021-09-17 · Modified
8.8EPSS 0.011
CVE-2020-21547
Libsixel 1.8.2 contains a heap-based buffer overflow in the dither_func_fs function in tosixel.c.
Published 2021-09-17 · Modified
8.8EPSS 0.011
CVE-2019-20094
An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_init_frame at fromgif.c.
Published 2019-12-30 · Modified
8.8EPSS 0.010
CVE-2019-20205
libsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.
Published 2020-01-01 · Modified
8.8EPSS 0.010
CVE-2022-27044
libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
Published 2022-04-08 · Modified
8.8EPSS 0.010
CVE-2022-27046
libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
Published 2022-04-08 · Modified
8.8EPSS 0.010
CVE-2019-3574
In libsixel v1.8.2, there is a heap-based buffer over-read in the function load_jpeg() in the file loader.c, as demonstrated by img2sixel.
Published 2019-01-02 · Modified
7.8EPSS 0.012
CVE-2018-19762
There is a heap-based buffer overflow at fromsixel.c (function: image_buffer_resize) in libsixel 1.8.2 that will cause a denial of service or possibly unspecified other impact.
Published 2018-11-30 · Modified
7.8EPSS 0.008
CVE-2026-33023
libsixel: Use-after-free in load_with_gdkpixbuf()
Published 2026-04-14 · Analyzed
7.8EPSS 0.003
CVE-2025-9300
saitoha libsixel img2sixel encoder.c sixel_debug_print_palette stack-based overflow
Published 2025-08-21 · Analyzed
7.8EPSS 0.002
CVE-2026-44636
libsixel: integer overflow in encoder
Published 2026-05-14 · Modified
7.8EPSS 0.001
CVE-2018-14073
libsixel 1.8.1 has a memory leak in sixel_allocator_new in allocator.c.
Published 2018-07-15 · Modified
7.5EPSS 0.014
CVE-2018-14072
libsixel 1.8.1 has a memory leak in sixel_decoder_decode in decoder.c, image_buffer_resize in fromsixel.c, and sixel_decode_raw in fromsixel.c.
Published 2018-07-15 · Modified
7.5EPSS 0.014
CVE-2020-36120
Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows attackers to cause a Denial of Service (DoS).
Published 2021-04-14 · Modified
7.5EPSS 0.012
CVE-2026-33021
libsixel: Use-after-free in sixel_encoder_encode_bytes()
Published 2026-04-14 · Analyzed
7.3EPSS 0.002
CVE-2026-33019
libsixel: Integer overflow leads to Out-of-bounds Read in img2sixel
Published 2026-04-14 · Analyzed
7.1EPSS 0.003
CVE-2026-33020
libsixel: Integer Overflow in write_png_to_file() leads to Heap-based Buffer Overflow
Published 2026-04-14 · Analyzed
7.1EPSS 0.002
CVE-2026-44637
libsixel: integer overflow in parser
Published 2026-05-14 · Analyzed
7.1EPSS 0.002
CVE-2026-33018
libsixel: Use-After-Free in load_gif()
Published 2026-04-14 · Analyzed
7.0EPSS 0.002
CVE-2020-21050
Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c.
Published 2021-09-14 · Modified
6.5EPSS 0.016
CVE-2020-21049
An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.
Published 2021-09-14 · Analyzed
6.5EPSS 0.014
CVE-2020-21048
An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
Published 2021-09-14 · Modified
6.5EPSS 0.014
CVE-2022-29978
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Published 2022-05-11 · Modified
6.5EPSS 0.010
CVE-2022-29977
There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Published 2022-05-11 · Modified
6.5EPSS 0.010
CVE-2019-20023
A memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4.
Published 2019-12-27 · Modified
6.5EPSS 0.010
CVE-2019-20024
A heap-based buffer overflow was discovered in image_buffer_resize in fromsixel.c in libsixel before 1.8.4.
Published 2019-12-27 · Modified
6.5EPSS 0.010
CVE-2020-11721
load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.
Published 2020-04-12 · Modified
6.5EPSS 0.009
CVE-2019-20022
An invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.
Published 2019-12-27 · Modified
6.5EPSS 0.009
CVE-2020-21677
A heap-based buffer overflow in the sixel_encoder_output_without_macro function in encoder.c of Libsixel 1.8.4 allows attackers to cause a denial of service (DOS) via converting a crafted PNG file into Sixel format.
Published 2021-08-10 · Modified
6.5EPSS 0.009
CVE-2018-19757
There is a NULL pointer dereference at function sixel_helper_set_additional_message (status.c) in libsixel 1.8.2 that will cause a denial of service.
Published 2018-11-30 · Modified
6.5EPSS 0.009
CVE-2020-19668
Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.
Published 2020-11-20 · Modified
6.5EPSS 0.009
CVE-2021-46700
In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
Published 2022-02-19 · Modified
6.5EPSS 0.008
CVE-2019-3573
In libsixel v1.8.2, there is an infinite loop in the function sixel_decode_raw_impl() in the file fromsixel.c, as demonstrated by sixel2png.
Published 2019-01-02 · Modified
5.5EPSS 0.010
1 / 2Next →