Headline
CVE-2023-45667: stb/stb_image.h at 5736b15f7ea0ffb08dd38af21067c314d6a3aae9 · nothings/stb
stb_image is a single file MIT licensed library for processing images.
If stbi__load_gif_main
in stbi_load_gif_from_memory
fails it returns a null pointer and may keep the z
variable uninitialized. In case the caller also sets the flip vertically flag, it continues and calls stbi__vertical_flip_slices
with the null pointer result value and the uninitialized z
value. This may result in a program crash.
Actions
Automate any workflow
Packages
Host and manage packages
Security
Find and fix vulnerabilities
Codespaces
Instant dev environments
Copilot
Write better code with AI
Code review
Manage code changes
Issues
Plan and track work
Discussions
Collaborate outside of code
GitHub Sponsors
Fund open source developers
* The ReadME Project
GitHub community articles
- Pricing
Search code, repositories, users, issues, pull requests…
Provide feedback
Saved searches****Use saved searches to filter your results more quickly
Sign up