CVE-2019-20205

libsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.

packagechannelchannel versionpkg versionstatus
libsixel
nixos-unstable
2020-02-09 19:20:46 UTC (8130f3)1.8.4vulnerable
2020-01-31 22:35:47 UTC (a21c2f)1.8.4vulnerable
2020-01-31 03:40:27 UTC (8539d5)1.8.4vulnerable
2020-01-27 15:15:42 UTC (e59dcf)1.8.4vulnerable
2020-01-26 13:55:23 UTC (73a59a)1.8.4vulnerable
2020-01-26 02:00:18 UTC (8a9807)1.8.4vulnerable
2020-01-24 12:40:44 UTC (05626c)1.8.4vulnerable
2020-01-23 12:40:25 UTC (d1ba7d)1.8.4vulnerable
2020-01-22 11:20:35 UTC (90441b)1.8.4vulnerable
2020-01-22 02:25:38 UTC (f37db1)1.8.4vulnerable
2020-01-21 07:35:39 UTC (a65f33)1.8.4vulnerable
2020-01-20 03:15:32 UTC (bea1a2)1.8.4vulnerable
2020-01-18 10:35:34 UTC (c438ce)1.8.4vulnerable
2020-01-17 08:15:31 UTC (2628f2)1.8.4vulnerable
2020-01-16 20:30:28 UTC (d5e9b7)1.8.4vulnerable