← Back to CVE List

CVE-2023-45661

Published: 2023-10-21T00:15Z
Last Modified: 2024-11-21T08:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds memcpy read in `stbi__gif_load_next`. This happens because two_back points to a memory address lower than the start of the buffer out. This issue may be used to leak internal memory allocation information. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt