CVE-2025-61146

saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component malloc_stub.c.
Configurations

Configuration 1 (hide)

cpe:2.3:a:libsixel_project:libsixel:*:*:*:*:*:*:*:*

History

26 Feb 2026, 20:01

Type Values Removed Values Added
First Time Libsixel Project libsixel
Libsixel Project
CPE cpe:2.3:a:libsixel_project:libsixel:*:*:*:*:*:*:*:*
Summary
  • (es) Se descubrió que saitoha libsixel hasta la v1.8.7 contenía una fuga de memoria a través del componente malloc_stub.c.
References () https://gist.github.com/optionGo/1100e5be05c5558501a95f5e99160584 - () https://gist.github.com/optionGo/1100e5be05c5558501a95f5e99160584 - Third Party Advisory
References () https://github.com/saitoha/libsixel/commit/e0ba6685262a3679cc5b9009c0c5b7dc8a3f262e - () https://github.com/saitoha/libsixel/commit/e0ba6685262a3679cc5b9009c0c5b7dc8a3f262e - Patch
References () https://github.com/saitoha/libsixel/issues/207 - () https://github.com/saitoha/libsixel/issues/207 - Issue Tracking, Vendor Advisory

23 Feb 2026, 21:19

Type Values Removed Values Added
CWE CWE-401
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.0

23 Feb 2026, 19:22

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-23 19:22

Updated : 2026-02-26 20:01


NVD link : CVE-2025-61146

Mitre link : CVE-2025-61146

CVE.ORG link : CVE-2025-61146


JSON object : View

Products Affected

libsixel_project

  • libsixel
CWE
CWE-401

Missing Release of Memory after Effective Lifetime