pkg:Debian/libsixel

50 total CVEsCRITICAL4HIGH23MEDIUM22LOW1

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2019-19638An issue was discovered in libsixel 1.8.2.
    from 0, < 1.8.6-1
  • CRITICAL9.8CVE-2019-19637An issue was discovered in libsixel 1.8.2.
    from 0, < 1.8.6-1
  • CRITICAL9.8CVE-2019-19636An issue was discovered in libsixel 1.8.2.
    from 0, < 1.8.6-1
  • CRITICAL9.8CVE-2019-19635An issue was discovered in libsixel 1.8.2.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2021-40656libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
    from 0
  • HIGH8.8CVE-2022-27046libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
    from 0
  • HIGH8.8CVE-2022-27044libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
    from 0
  • HIGH8.8CVE-2021-41715libsixel 1.10.0 is vulnerable to Use after free in libsixel/src/dither.c:379.
    from 0
  • HIGH8.8CVE-2020-21548Libsixel 1.8.3 contains a heap-based buffer overflow in the sixel_encode_highcolor function in tosixel.c.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2020-21547Libsixel 1.8.2 contains a heap-based buffer overflow in the dither_func_fs function in tosixel.c.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2019-20205libsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2019-20140An issue was discovered in libsixel 1.8.4.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2019-20094An issue was discovered in libsixel 1.8.4.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2019-19778An issue was discovered in libsixel 1.8.2.
    from 0, < 1.8.6-1
  • HIGH8.8CVE-2019-19777stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has a heap-based buffer over-read in stbi__load_main.
    from 0, < 1.8.6-1
  • HIGH7.8CVE-2026-44636libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.8CVE-2026-33023libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.8CVE-2025-9300A vulnerability was found in saitoha libsixel up to 1.10.3.
    from 0
  • HIGH7.8CVE-2019-3574In libsixel v1.8.2, there is a heap-based buffer over-read in the function load_jpeg() in the file loader.c, as demonstrated by img2sixel.
    from 0, < 1.8.2-2
  • HIGH7.8CVE-2018-19762There is a heap-based buffer overflow at fromsixel.c (function: image_buffer_resize) in libsixel 1.8.2 that will cause a denial of service…
    from 0, < 1.8.2-2
  • HIGH7.5CVE-2018-14073libsixel 1.8.1 has a memory leak in sixel_allocator_new in allocator.c.
    from 0, < 1.8.2-1
  • HIGH7.5CVE-2018-14072libsixel 1.8.1 has a memory leak in sixel_decoder_decode in decoder.c, image_buffer_resize in fromsixel.c, and sixel_decode_raw in fromsixe…
    from 0, < 1.8.2-1
  • HIGH7.3CVE-2026-33021libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.1CVE-2026-44637libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.1CVE-2026-33020libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.1CVE-2026-33019libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • HIGH7.0CVE-2026-33018libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0
  • MEDIUM6.5CVE-2022-29978There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6.
    from 0
  • MEDIUM6.5CVE-2022-29977There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6.
    from 0
  • MEDIUM6.5CVE-2021-46700In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double free.
    from 0
  • MEDIUM6.5CVE-2021-45340In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a…
    from 0
  • MEDIUM6.5CVE-2020-21050Libsixel prior to v1.8.3 contains a stack buffer overflow in the function gif_process_raster at fromgif.c.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2020-21049An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted…
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2020-21048An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2020-21677A heap-based buffer overflow in the sixel_encoder_output_without_macro function in encoder.c of Libsixel 1.8.4 allows attackers to cause a…
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2020-19668Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.
    from 0
  • MEDIUM6.5CVE-2020-11721load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a den…
    from 0
  • MEDIUM6.5CVE-2019-20056stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has an assertion failure in stbi__shiftsigned.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2019-20024A heap-based buffer overflow was discovered in image_buffer_resize in fromsixel.c in libsixel before 1.8.4.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2019-20023A memory leak was discovered in image_buffer_resize in fromsixel.c in libsixel 1.8.4.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2019-20022An invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.
    from 0, < 1.8.6-1
  • MEDIUM6.5CVE-2018-19757There is a NULL pointer dereference at function sixel_helper_set_additional_message (status.c) in libsixel 1.8.2 that will cause a denial o…
    from 0, < 1.8.2-2
  • MEDIUM5.5CVE-2019-11024The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has infinite recursion.
    from 0, < 1.8.6-1
  • MEDIUM5.5CVE-2019-3573In libsixel v1.8.2, there is an infinite loop in the function sixel_decode_raw_impl() in the file fromsixel.c, as demonstrated by sixel2png.
    from 0, < 1.8.2-2
  • MEDIUM5.5CVE-2018-19763There is a heap-based buffer over-read at writer.c (function: write_png_to_file) in libsixel 1.8.2 that will cause a denial of service.
    from 0, < 1.8.2-2
  • MEDIUM5.5CVE-2018-19761There is an illegal address access at fromsixel.c (function: sixel_decode_raw_impl) in libsixel 1.8.2 that will cause a denial of service.
    from 0, < 1.8.2-2
  • MEDIUM5.5CVE-2018-19759There is a heap-based buffer over-read at stb_image_write.h (function: stbi_write_png_to_mem) in libsixel 1.8.2 that will cause a denial of…
    from 0, < 1.8.2-2
  • MEDIUM5.5CVE-2018-19756There is a heap-based buffer over-read at stb_image.h (function: stbi__tga_load) in libsixel 1.8.2 that will cause a denial of service.
    from 0, < 1.8.2-2
  • MEDIUM4.0CVE-2025-61146saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component malloc_stub.c.
    from 0
  • LOW2.5CVE-2026-44638libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel.
    from 0