-
Notifications
You must be signed in to change notification settings - Fork 90
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
FPE in sixel_encoder_do_resize, encoder.c:633 #166
Comments
Can you report the issue to the new upstream at https://github.com/libsixel/libsixel ? |
Maybe this project should as well be archived if it's not anymore the main upstream repository for libsixel. |
OK, and thank you for your suggestion. |
CVE-2022-29978 assigned. |
This is essentially the same bug as #167, and should also be fixed by the patch attached to that issue. |
Description
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in img2sixel 1.8.6. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted JPEG file.
Version
img2sixel 1.8.6, commit id 6a5be8b (Tue Jan 14 02:27:00 2020 +0900)
Reproduction
poc.zip
Platform
The text was updated successfully, but these errors were encountered: