UBUNTU-CVE-2020-21048
Dashboard / Vulnerabilities / UBUNTU-CVE-2020-21048
Summary:
Details: An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
References: https://ubuntu.com/security/CVE-2020-21048, https://github.com/saitoha/libsixel/issues/73, https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037, https://github.com/saitoha/libsixel/commit/26ac06f3623279348f0dce2d191a9b6ca0c80226, https://github.com/saitoha/libsixel/releases/tag/v1.8.4, https://github.com/saitoha/libsixel/blob/master/ChangeLog, https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad, https://www.cve.org/CVERecord?id=CVE-2020-21048
Affected packages
Package
Name: libsixel
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
