CVE-2020-11721
Published
CVSS v3
6.5
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT
Description
load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.
A SIXEL encoder/decoder implementation derived from kmiya's sixel (https://github.com/saitoha/sixel).