CNNVD-202508-2630 Information

CNNVD ID

CNNVD-202508-2630

CVE-2025-9300

  • CNNVD Published: 2025-08-21

Description (Chinese)

libsixel是Hayaki Saito个人开发者的一个为DEC SIXEL图形和其他转换器程序提供编码/解码实现的软件包。 libsixel 1.10.3及之前版本存在安全漏洞,该漏洞源于栈缓冲区溢出。

Description (English)

Libsixel is a software package that Hayaki Saito personal developers provide code/code for DEC SIXEL graphics and other converter programs. Libsixel 1.10.3 and earlier versions had a security loophole, which originated from the spilling of the silo buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-08-21

Last Modified

2026-02-24

References

https://vuldb.com/?submit.632366 https://github.com/saitoha/libsixel/issues/200#issuecomment-3178785635 https://github.com/saitoha/libsixel/commit/316c086e79d66b62c0c4bc66229ee894e4fdb7d1 https://vuldb.com/?id.320905 https://vuldb.com/?ctiid.320905 https://drive.google.com/file/d/1IIvvRFgUQZcySqeoqXXhsxd0HZCjClJ7/view?usp=sharing https://access.redhat.com/security/cve/cve-2025-9300 https://nvd.nist.gov/vuln/detail/CVE-2025-9300

Share on: