An issue in the dither.c component of libsixel prior to v1.8.4 allows attackers to cause a denial of service (DOS) via a crafted PNG file.
References
| Link | Resource |
|---|---|
| https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad | Broken Link |
| https://github.com/saitoha/libsixel/blob/master/ChangeLog | Release Notes Third Party Advisory |
| https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037 | Patch Third Party Advisory |
| https://github.com/saitoha/libsixel/issues/73 | Exploit Issue Tracking Patch Third Party Advisory |
| https://github.com/saitoha/libsixel/releases/tag/v1.8.4 | Release Notes Third Party Advisory |
| https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad | Broken Link |
| https://github.com/saitoha/libsixel/blob/master/ChangeLog | Release Notes Third Party Advisory |
| https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037 | Patch Third Party Advisory |
| https://github.com/saitoha/libsixel/issues/73 | Exploit Issue Tracking Patch Third Party Advisory |
| https://github.com/saitoha/libsixel/releases/tag/v1.8.4 | Release Notes Third Party Advisory |
Configurations
History
24 Apr 2026, 12:56
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Saitoha
Saitoha libsixel |
|
| CPE | cpe:2.3:a:saitoha:libsixel:*:*:*:*:*:*:*:* |
21 Nov 2024, 05:12
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://bitbucket.org/netbsd/pkgsrc/commits/6f0c011cbfccdffa635d04c84433b1a02687adad - Broken Link | |
| References | () https://github.com/saitoha/libsixel/blob/master/ChangeLog - Release Notes, Third Party Advisory | |
| References | () https://github.com/saitoha/libsixel/commit/cb373ab6614c910407c5e5a93ab935144e62b037 - Patch, Third Party Advisory | |
| References | () https://github.com/saitoha/libsixel/issues/73 - Exploit, Issue Tracking, Patch, Third Party Advisory | |
| References | () https://github.com/saitoha/libsixel/releases/tag/v1.8.4 - Release Notes, Third Party Advisory |
Information
Published : 2021-09-14 16:15
Updated : 2026-04-24 12:56
NVD link : CVE-2020-21048
Mitre link : CVE-2020-21048
CVE.ORG link : CVE-2020-21048
JSON object : View
Products Affected
saitoha
- libsixel
CWE
