CVE-2023-45667
CVSS V2 None
CVSS V3 None
Description
stb_image is a single file MIT licensed library for processing images.
If `stbi__load_gif_main` in `stbi_load_gif_from_memory` fails it returns a null pointer and may keep the `z` variable uninitialized. In case the caller also sets the flip vertically flag, it continues and calls `stbi__vertical_flip_slices` with the null pointer result value and the uninitialized `z` value. This may result in a program crash.
Overview
- CVE ID
- CVE-2023-45667
- Assigner
- GitHub_M
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-10-20T23:26:44.376Z
- Last Modified Date
- 2023-10-20T23:26:44.376Z
Weakness Enumerations
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-45667 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45667 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 10:13:58 | Added to TrackCVE |